Securing Laravel
  • Home
  • In Depth Articles
  • Security Tips
  • Archives
  • About
  • Laravel Security Audits & Pentests
  • Practical Laravel Security Course
Sign in Subscribe
Newsletter

Oops, broken link...

The teams discount link was broken

Stephen Rees-Carter

Stephen Rees-Carter

26 Nov 2021

This post is for subscribers only

Subscribe now

Already have an account? Sign in

Read more

Security Tip: OTPs Need Rate Limiting Too!

Security Tip: OTPs Need Rate Limiting Too!

[Tip #110] This is your periodic reminder that Rate Limiting is essential, and for more than just your user/password form! Make sure you've got it on your OTP, or someone will come along and brute-force that 6-digit code.

By Stephen Rees-Carter 02 May 2025
Security Tip: Yes, Your .Env Is Secure Enough!

Security Tip: Yes, Your .Env Is Secure Enough!

[Tip #109] I get asked this all the time, so it's time to set the record straight: there is nothing insecure about storing your credentials in a .env, as long as you keep your .env protected!

By Stephen Rees-Carter 23 Apr 2025
In Depth: What Actually Is MFA?

In Depth: What Actually Is MFA?

[In Depth #34] MFA, 2FA, 2SV, DFA... Something you know/have/are... Let's figure out this MFA thing and why it's so important.

lock-1 By Stephen Rees-Carter 15 Apr 2025
Security Tip: Temporary Local File URLs!

Security Tip: Temporary Local File URLs!

[Tip #108] Temporary URLs for file access is an essential piece of the security puzzle, which up until recently were only available out-of-the-box for the S3 driver. Now you can easily generate them for local files too!

By Stephen Rees-Carter 01 Apr 2025
Securing Laravel
  • Subscribe
  • In Depth Articles
  • Security Tips
  • Archives
  • Stephen's Socials
Powered by Ghost

Securing Laravel

The essential security resource for Laravel developers.