SEARCH RESULTS
 
Showing 1-10 of 1000 records
 
Expand article

Web Services and XML Security Training at OWASP

2008-08-28 08:55:59 by Gunnar Peterson in 1 Raindrop
 
...Security training at OWASP's AppSec conference in NYC, Sept 22-23. Web services provide the backbone that integrates many things in the enterprise from application servers, databases, ERP, and CRM. Increasingly we are seeing Web services in more B2C roles with Rest, Federation and other technologies. The class looks at how Web services...
 
 
 
 
 
Expand article

Fake Security Software Domains Serving Exploits

The Article has images
2008-08-28 06:41:10 by Dancho Danchev in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...security software's site, may in fact start receiving so much traffic due to the combination of traffic acquisition tactics, that introducing client-side exploits courtesy of a third-party affiliate network , may in fact prove more profitable then the revenue sharing partnership with the rogue security software's vendor at the first place ...
 
 
 
 
 
Expand article

Judge: Privacy advocate can post Social Security numbers

2008-08-27 00:00:00 by HASH0x8be0ad4 in Network World on Security
 
Can a state government prohibit an individual from posting Social Security numbers online that were easily and legally obtained from government Web sites
 
 
 
 
 
Expand article

Misconceptions about outsourcing security

2007-12-13 14:05:54 by Khalid Kark in Security & Risk Management
 
...security. Here are the most common ones that I come across Outsourcing security is cheaper than doing it internally. Cost is usually the one of the reasons business gets interested to outsource but Forrester has consistently found that for security managers cost is not the primary reason they want to outsource. and outsourcing may not always...
 
 
 
 
 
Expand article

"Where Should Airport Security Begin?"

2007-12-20 12:28:12 by Editor in Schneier on Security
 
In this essay, Clark Ervin argues that airport security should begin at the front door to the airport: Like many people, I spend a lot of time in airport terminals, and I often think that they must be an awfully
 
 
 
 
 
Expand article

Introducing Google's online security efforts

The Article has images
2007-05-21 09:43:00 by A Googler in Google Online Security Blog
...security is an important topic for Google, our users, and anyone who uses the Internet. The related issues are complex and dynamic and we've been looking for a way to foster discussion on the topic and keep users informed. Thus, we've started this blog where we hope to periodically provide updates on recent trends, interesting findings, and...
 
 
 
 
 
Expand article

Automating web application security testing

2007-07-16 11:40:00 by Panayiotis Mavrommatis in Google Online Security Blog
 
...Security Team Cross-site scripting (aka XSS) is the term used to describe a class of security vulnerabilities in web applications. An attacker can inject malicious scripts to perform unauthorized actions in the context of the victim's web session. Any web application that serves documents that include data from untrusted sources could be...
 
 
 
 
 
Expand article

An Analysis of Security Mechanisms in the OSI Model

2007-12-06 00:00:00 by Editor in Infosec Writers Latest Security Papers
 
Karlo Rodriguez submits this paper on security and the OSI model
 
 
 
 
 
Expand article

Information Security Policy and Responsibility

2007-12-27 08:56:05 by Editor in Information Security Policy Whitepapers
 
In this paper we discuss important information security policy lessons from recent high-profile data breaches and the resulting public response of the effected organizations
 
 
 
 
 
Expand article

Security Policy Considerations for the Junk FAX Prev