|
Solution Search:
|
Software Quality Resources
Cenzic names top five Web app vulnerabilities from February
including Lotus Domino, Symantec Sygate Management Server, IBM Tivoli, Domino Web Access and InfoVista VistaPortal. They were selected for their severity and potential threat to common, widely used software and business environments.
Lotus... More... Mar 29, 2006
How to avoid authentication bypass attacks
system that allows a valid identity to be forged. In the former, either the Web access control system does not have the full set of URIs that enumerate the application or Web site under attack, or the access control system does not extend to the section...
More...
Dec 13, 2005
OWASP Top Ten
can use these flaws to attack backend components through a web application.Broken access control:Restrictions on what authenticated users are allowed to do are not properly enforced. Attackers can exploit these flaws to access other users' accounts...
More...
Jun 9, 2006
Ounce 4.2 touts application security report generation tool
data privacy and operational integrity, such as errors in encryption, logging and access control.
SmartAudit Drill-Down: Direct access to the non-compliant source code for further analysis and remediation prioritization and assignment. The initial... More... Feb 5, 2007
Application firewall tips and tricks
firewalls can block legitimate users, customers or partners -- or give hackers access to systems and data. This tip reviews types of application firewalls and how to tune them for your organization's environment.
Jan 9, 2006
Related Tips
Real World Web Security Problems and Solutions login weaknesses
an Internet Explorer browser helper object that provided access into a sensitive backed system. Basically the login mechanism evaluated the user's Windows...
More...
Jun 19, 2009
Real World Web Security Problems and Solutions - login weaknesses
an Internet Explorer browser helper object that provided access into a sensitive backed system. Basically the login mechanism evaluated the user's Windows...
More...
Jun 19, 2009
Preparing for testing application in the cloud
which is similar to cloud computing that allows users to access the software/hardware onsite or via an Internet connection; Service Oriented Architecture...
More...
Jun 2, 2009
|