SearchSecurity.com have featured a fantastic video on a Community version of the free Web app security testing tool Netsparker.
Sourced from TheAcademyPro.com, Peter Giannoulis demonstrates how to use the community version of Netsparker.
Netsparker, web application security scanner can crawl, attack and identify vulnerabilities in all custom web applications regardless of the platform and the technology it’s
In a bid to stave off critcisim over their security policy, Facebook recently held a company meeting to discuss privacy issues.
in what has been described by some as a panic-stricken response to public attacks on how it handles member details, Facebook also announced two new security measures that will keep member accounts and personal information
TamperIE Web Security Tool is a small utility that enables HTML-form tampering for penetration testing of web applications.
TamperIE is an Internet Explorer Browser Helper Object which allows tampering with HTTP requests from Internet Explorer 5 and above.
TamperIE is a useful tool for security testing your web applications, in order to ensure you don’t make foolish
Tags:
Bayden Systems,
browsers,
HTML-form tampering,
HTTP,
HTTP requests,
IE,
Internet Explorer 5,
Internet Explorer Browser Helper Object,
SSL,
tamper,
TamperIE,
tool,
web page,
Web Security Tool,
web tampering
SQL Injection vulnerabilities can cause a lot of damage to a web application. A malicious user can possibly view records, delete records, drop tables or gain access to your server.
SQL Inject-Me is the Exploit-Me tool that allows the user to test their web applications against common SQL Injection vulnerabilities. SQL Inject Me is a Mozilla
InformIT have published an article on Information Security.
Titled Information Security Bookshelf: Part 2 (2011 Edition)
In this second part of a two-part series on information security books, Ed Tittel compiles a collection of pointers to useful and informative books on information security. Though this list was originally compiled to prep for the CISSP
Security Software Testing Suite (SSTS) is a set of tools used for testing Windows security software that implement application-based security – i.e. most of the Internet security suites, HIPS, personal firewalls, behavior blockers etc.
SSTS is based on the idea of independent programs that attempt to bypass various features of the security software. Each test of
Tags:
application-based security,
behavior blockers,
HIPS,
Internet security suites,
keylogger tests,
outbound protection tests,
personal firewalls,
Proactive Security Challenge project,
Security Software Testing Suite,
self-defense tests,
SSTS,
TesterTools,
unified structure,
user interface,
Windows,
Windows security software
Graudit is a simple script and signature sets that allows you to find potential security flaws in source code using the GNU utility grep.
It’s comparable to other static analysis applications like RATS, SWAAT and flaw-finder while keeping the technical requirements to a minimum and being very flexible.
Click here for more info
Comments --
Add