Web application security resources

These are the best online resources in web application security :

Pantera – A Web Assessment Studio

OWASP is happy to announce the first release of OWASP Pantera – Web
Assessment Studio. Pantera is a mix between a pentest proxy, an application
scanner, and an intelligent analysis framework. Pantera’s goal is to leave
the analysis and automatic (repetitive) stuff to the engine, leaving only
the important decisions to the security expert.
Great tool !
OWASP Pantera Web Assessment Studio Project

OWASP Testing Guide V2

The Open Web Application Security Project (OWASP) is dedicated to finding and fighting the causes of insecure software. Everything here is free and open source.
OWASP has released the Security Testing Guide v2 .At 270 pages, this guide is already a must-have for most developers and penetration/application testers, but we want to take it one step further and make sure that everything is 100%.
The team leaders of this project are Eoin Keary – Editor and Matteo Meucci – Autumn of Code Lead .

Get it here :
http://www.owasp.org/index.php/OWASP_Testing_Guide_v2_Table_of_Contents

Hacking the Intranet with JavaScript Anti-DNS Pinning

I came across an ingenious way of breaking the same-origin policy by undermining dns-pinning : http://shampoo.antville.org/stories/1451301/ Voila, the intranet is wide open ! Good work.

Page 55 of 60« First...5354555657...Last »