Archive for the 'Web Applications' Category
Wednesday, February 21st, 2007
It seems that Esser’s initiative to disclose one PHP vulnerability each day during March 2007 is unpopular among core PHP developers, especially for Zeev Suraski, co-creator of PHP and chief technology officer of Zend, which manages PHP development.
Leave Comment » | Posted in Month Of PHP Bugs, Open Mike, Web Applications
Tuesday, February 20th, 2007
ABC News reports on a new attack vector targeted at broadband routers / acces points : Drive-By Pharming.
Leave Comment » | Posted in Articles, Web Applications
Monday, February 12th, 2007
The (in) famous Adobe Acrobat Reader Plugin Universal PDF XSS is the scariest vulnerability discovered this year because it can turn any pdf into an XSS attack vector.
Leave Comment » | Posted in Articles, Web Applications
Sunday, February 11th, 2007
Due to the really huge install base, I really hope that the folks at wordpress.org issue a patch quickly to address these vulnerabilities.
1 Comment » | Posted in Web Applications
Sunday, February 11th, 2007
amazing that this nifty tool supports Server-side JS, GET, POST, uploads, Cookies, SQLite and AJAX.
1 Comment » | Posted in Penetration Testing, Tools, Web Applications
Sunday, February 11th, 2007
Anurag Agarwal announced a series of professional portraits of the gurus in Web Applications Security .
Quoting Anurag :
Every friday i will present a major player from the web application security field and outline his contributions to the industry.
The series of mini biographies is called Reflection and this week’s security superstar was Amit Klein. [...]
Leave Comment » | Posted in Articles, Web Applications
Friday, February 9th, 2007
The new buzz of the Google Webmaster Tools’ Link has spread like wildfire. However, this great tool had a serious vulnerability which permitted to gain access to the links statistics of any website.
Leave Comment » | Posted in Articles, Web Applications
Tuesday, January 30th, 2007
(OWASP) has released the first draft of the 2007 edition of the Ten Most Critical Web Application Security Vulnerabilities. Over the years, this document has turned into a de facto web application vulnerability checklist.
Leave Comment » | Posted in Web Applications
Saturday, January 27th, 2007
Java Source Code Audit tools
1 Comment » | Posted in Code Audit, Tools, Web Applications
Saturday, January 27th, 2007
Because a lot of web applications rely on the session id for all the authentication and authorization , knowing the strength of the algorithm behind the session ID generation is essential.
Leave Comment » | Posted in Tools, Web Applications
Pages (7): « First ... « 3 4 5 [6] 7 »