Cybersecurity Strategy Newsletters
Stay informed with the latest cybersecurity trends, risk management insights, and practical strategies—delivered by the R-sec team.
Each issue is crafted for CISOs, compliance leaders, and security professionals who need real-world, no-fluff insights to stay ahead of threats, streamline compliance, and drive security maturity.
We publish quick-read, actionable
newsletters that cover:
AI in cybersecurity
Compliance updates across the Americas
Threat landscape changes
Data protection strategies
Security best practices for IT/OT
Bookmark this page to explore past issues or catch up on what you missed.
Liferay vulnerability scanner: How to detect and remediate...
Liferay environments face a growing volume of CVEs and limited patch paths for older versions. This guide...
IIS security best practices: How to secure an IIS server...
Learn how to secure Microsoft IIS with practical hardening best practices, attacker-focused insights, and c...
SNI proxy SSRF vulnerabilities: Misconfigurations,...
SNI proxy SSRF is a lesser-known but high-impact vulnerability class where misconfigured proxies route traff...
What is an IDOR vulnerability?
Insecure direct object references (IDOR) are a type of access control vulnerability where an application expos...
Your session cookies are probably misconfigured: How...
Understand how to correctly implement cookie security flags in modern web applications. Includes practical examp...
REST API security testing: A complete guide
Learn how to perform REST API security testing with a practical, step-by-step approach. This guide cover...
Configuring your web server to not disclose its id...
If you are running a web server, it often shows the world what type of server it is, its version number, and s...
Acunetix Security Hardening Guide
A new document was prepared instead of this blog post. You can find it here. Read more The post Acun...
Next.js middleware authorization bypass vulnerability:...
A critical vulnerability in the Next.js framework, officially disclosed on March 21, 2025, allows attac...