SEARCH RESULTS
 
Showing 1-10 of 695 records
 
Expand article

Bots + Web Vulnerabilites - An Approaching Storm

2008-05-15 21:55:13 by Bill in Grumpy Security Guy
 
...Web Vulnerabilites - An Approaching Storm
 
 
 
 
 
Expand article

SCSU web server becomes spam server and exposes personal information

The Article has images
2008-05-02 11:12:47 by Evan Francen in The Breach Blog
...Web site had been used by hackers to flog fancy wedding rings, Southern Connecticut State University is notifying 11,000 current and former students that their Social Security numbers may have been compromised Reference URL SCSU Alert PCWorld NBC Channel 30 News Chronicle of Higher Education Report Credit Southern Connecticut State...
 
 
 
 
 
Expand article

SDL and Web 2.0

2008-02-28 22:26:00 by sdl in The Security Development Lifecycle
 
...Web 2.0 properties. My favorite quote from this column (probably my favorite quote from anyones column so far this year): theres still much to do in the [software] industry to reach a level of truly sustainable computing. This is perhaps especially true in the nascent area of Web 2.0 development. Lets hope Microsoft brings its Trustworthy...
 
 
 
 
 
Expand article

Web 2.0 SecureD. DelivereD. :)

2007-10-13 09:29:44 by RaviC in Musings on Information Security
 
Web 2.0 has become a well accepted jargon in the current marketplace. It is a set of new web based technologies that enable building of on-line communities Web 2.0 is a democracy of user communities [thanks to Paul Graham for his definition]. Web 2.0 gives more power for the users to interact, customize, share and leverage The democratization of...
 
 
 
 
 
Expand article

Web Server Software and Malware

The Article has images
2007-06-05 09:30:00 by Niels Provos in Google Online Security Blog
...web server software to provide insight into how server software is correlated to servers hosting malware binaries or engaging in drive-by-downloads We determine server operating system by examining the 'Server:' HTTP header reported by most web servers. A survey of servers running roughly 80 million domain names reveals the web server...
 
 
 
 
 
Expand article

House committee issues report and finds fault with TSA web site

The Article has images
2008-01-15 09:35:53 by Evan Francen in The Breach Blog
...Web Services Victims Certain people that used the TSA traveler redress website between October 6, 2006 and February 13, 2007 Number Affected thousands Types of Data Name, Social Security number, birth date, birth place, sex, height, weight, hair color, eye color, address, and home and work telephone number Breach Description According to...
 
 
 
 
 
Expand article

Automating web application security testing

2007-07-16 11:40:00 by Panayiotis Mavrommatis in Google Online Security Blog
 
...web applications. An attacker can inject malicious scripts to perform unauthorized actions in the context of the victim's web session. Any web application that serves documents that include data from untrusted sources could be vulnerable to XSS if the untrusted data is not appropriately sanitized. A web application that is vulnerable to XSS...
 
 
 
 
 
Expand article

Web Site: Security and Trust

The Article has images
2007-01-18 07:10:00 by RaviC in Musings on Information Security
...web site that is accessible securely through https can be trusted. This is not true. Not all the sites that use https can be trusted. Nothing can stop fraudsters from setting up a https web site. Though https offers security it does not offer trust. Trust is a choice that the user has to make consciously. Here are some tips that help you to...
 
 
 
 
 
Expand article

Web-Facing Applications

2008-04-16 07:19:01 by Michael Dahn in PCI Blog - Compliance Demystified
 
...web application and the 6.6 web-facing application. The intent of 6.5 is for internally developed, Internet and intranet facing web-applications. PCI DSS 6.6 is meant for Internet-facing web-applications, and NOT for Intranet use But is it this simple? Trey Ford does not think so and proposes that changes in the network edge make us...
 
 
 
 
 
Expand article

Maryland Department of Assessments & Taxation web exposure

The Article has images
2008-01-05 14:02:15 by Evan Francen in The Breach Blog
...web application used to collect information from residents over the internet was not adequately secured with encryption leaving some sensitive personal information un-protected while transferred from clients to the Web server Reference URL Washington Times News Story Report Credit Gary Emerling, The Washington Times Response From the...