OWASP Project has updated and released the all new Web Application Security Risk List - Release Candidate, There were a few changes like Insecure Configuration Management was changed to Security Misconfiguration. New Risk was added Unvalidated...
I came across this interesting article that talks about how is Linux being used at Google. There is not much specific information how the tasks are scheduled and all. This was a talk between Google Folks and the Kernel Developers. Google has ported...
I had earlier written about Microsoft's COFEE. COFEE utilities are a set of computer forensics and auditing tools that Microsoft had put on a USB drive and provides it to law enforcement for use in trying to extract info from a computer. There was some...
Microsoft has released their latest Security Intelligence Report (SIR).
Some of the Top Highlights of the report are :
Large increase in Worm Infection.
Vista was less compromised than Windows XP machines.
Phishing and Automated SQL Injection...
If you are interested in reading a book about source code analysis to plug in your security loop holes, I recommend this paper. It is a good read, it discusses benefits of source code analysis and puts lights on many issues like compile time issues,...