Archive for the 'Web Applications' Category

WordPress Exploit Scanner

This WordPress plugin searches the files on your site for a few known strings sometimes used by hackers, and lists them with code fragments taken from the files.

Share This

Scanners: New Nessus Release; New eEye Web Scanner

Tenable released version 3.2.0 of their popular Nessus vulnerability scanner and eEye enters the arena of web application scanners by releasing Retina Web App Scanner.

Share This

Can I Evade ScanSafe Anywhere+ ?

ScanSafe Anywhere+ is a very cool web security service which is intended to provide web content security for roaming users.

Share This

Googlehacks and Anti-Googlehacks

I’ve found today 2 resources which are connected to good old Google Hacking Database : Googlehacks and Google Hacking Honeypot.

Share This

Nikto 2 Is Out There

Nikto 2 is out ! Finally :) I’m sure most of us have seen the funny message primisinf a new version real soon ; well, it happened and you can check the huge Changelog here.

Share This

Free Web Application Firewall - Armorlogic Profense

Although one may argue that a firewall does not really solve the security problems of an organization, I highly doubt anyone would design a modern network security schema without a solid firewall.
There are many open source network firewalls available on the market and this is why I was very glad to discover an open […]

Share This

Finjan Web Security Trends Report - Q3/2007

One of the innovative research presented in the report is the security model and risk posed by the various widgets which seem to be the hottest trend in GUI design.Either built for WWW, Windows Vista or Macintosh OSX Dashboard,the widgets are everywhere and Finjan found vulnerabilities in widgets and gadgets that enable attackers to gain control of user machines.

Share This

Security Tools Fast Links 1

Security tools : Reflector for .NET; Security System Analyzer; Echo Mirage; soapUI

Share This

WASC Script Mapping Project extends RSnake XSS Cheat Sheet ?

On Aug. 27, WASC released the Script Mapping Project which is intended to be an exhaustive refference on XSS vectors.What I fail to understand is why WASC didn’t include as a starting point RSnake’s excellent XSS Cheat Sheet. It’s not like they would be the first. OWASP already quotes RSnake’s work as a valuable resource.

Share This

Second PHP IDS in 3 months released by CoreLabs

CORE GRASP for PHP is a web-application protection software aimed at detecting and blocking injection vulnerabilities and privacy violations.The present implementation protects PHP 5.2.3 against SQL-injection attacks for the MySQL engine

Share This
Pages (7): [1] 2 3 4 » ... Last »
Close
E-mail It