Nov 17 2007
Web application security
Dear reader,
Are you, or your developers, familiar with the following terms: Cross Site Scripting (XSS), Injection Flaws, Malicious File Execution, Insecure Direct Object Reference, Cross Site Request Forgery (CSRF), Information Leakage and Improper Error Handling, Broken Authentication and Session Management, Insecure Cryptographic Storage, Insecure Communications, Failure to Restrict URL Access?
This is the top ten web application vulnerabilities list. Do not neglect any one of them. Traditionally, vulnerability analysis and management has been focused at the network or operating system level. Times are changing. Continue Reading »
