SECURITY LEARNING CENTRE
Free guides to help developers, small business owners, and anyone with a website understand the most common security threats — and what to do about them.
XSS is one of the most common vulnerabilities on the web. Learn exactly how attackers inject malicious scripts into web pages, what they can steal, and how to stop it.
SQL injection has been around for decades and is still one of the most dangerous attack types. Understand how it works, why it is so destructive, and how to protect against it.
IDOR lets attackers view other users' private data simply by changing a number in a URL. It is shockingly common, surprisingly simple to find, and easy to prevent once you understand it.
As AI is embedded into more web applications, prompt injection has become one of the most pressing new attack types. Learn how it works and what developers need to do to defend against it.
A practical, non-technical checklist covering the security basics every small business website should have in place. No jargon, no guesswork — just clear steps you can take this week.
Security headers are a simple, free way to harden any website. Most sites are missing at least some of them. Learn what each header does and how to add them in minutes.
ScanexAI automatically detects XSS, SQL injection, IDOR, prompt injection, missing headers, and dozens of other issues on any live website — in under 2 minutes.
Run a Free Scan