blogged find better blogs
HomeTechnologyEntertainmentSportsPoliticsBusinessHumorWorld NewsLifestyleDirectoryMore Topics
Blog Detail
CGISecurity - Website and Application Security news

web application and website security
CGISecurity - Website and Application Security news Blog  
Related Blogs
previous blog next blog

1 Users are Following

7.0
very good
based on editor's review


recent postsrss feed

Potential risks of using Google's free DNS service?

Dec 4, 2009
Google has announced that they are offering a free DNS service to anyone wanting to use it. Unfortunately the motivations/privacy concerns aren't being discussed in as much detail as I'd like, and people aren't asking the important question of why...

Preventing Security Development Errors: Lessons Learned at Windows Live by Using ASP.NET MVC

Dec 3, 2009
Microsoft has published a paper on its ASP.NET MVC framework, how to use it, and how utilization of an SDL eliminates the potential to introduce vulnerabilities such as XSRF. From the paper "On the Microsoft platform, most Web applications are based on...

Clientless SSL VPN products break web browser domain-based security models

Dec 1, 2009
A new CERT advisory has been published outlining a weakness in the way web based SSL clients operate, resulting in a Same Origin Policy breakage. Here's the meaty details. "As the web VPN retrieves web pages, it rewrites hyperlinks so that they are...

Nozzle: A Defense Against Heap-spraying Code Injection Attacks

Nov 24, 2009
Microsoft has been working on a tool called 'Nozzle' to prevent the exploitation of heap spraying attacks and released a whitepaper describing the process. From the whitepaper. "Heap spraying is a new security attack that significantly increases the...

Symantec SQL Injected, Seeks Counseling

Nov 23, 2009
"The Romanian hacker who successfully broke into a web site owned by security vendor Kaspersky Lab has struck again, this time exposing shortcomings in a Symantec web server. The hacker, known only as Unu, said in a blog post today that he was able to...


Comments & Reviews:
Be the First to Review this Blog!