SEARCH RESULTS
 
Showing 1-10 of 16 records
 
Expand article

Null Strings in ASP.NET Declarative DataSource Updates

2008-08-29 15:42:47 by keith-brown in Security Briefs
 
...strings should have been. Indeed controls like the TextBox have code in them that allows you to set the Text property to null and the TextBox will convert that into an empty string. So it's a bit counterintuitive that the declarative data source works the opposite way by default When you use a declarative data source to perform a...
 
 
 
 
 
Expand article

Automating web application security testing

2007-07-16 11:40:00 by Panayiotis Mavrommatis in Google Online Security Blog
 
...strings designed to expose XSS and other vulnerabilities to each input, and analyzes the resulting responses for evidence of such vulnerabilities. Although it started out as an experimental tool, it has proved to be quite effective in finding XSS problems. Besides XSS, it finds other security problems such as response splitting attacks,...
 
 
 
 
 
Expand article

The High Price of Things that are Free

2007-08-01 19:26:00 by jack in adware and spyware
 
...strings attached This is particularly true with the case of unwanted adware and spyware that some of us unknowingly download and infect our systems with. Adware and spyware are programs that are unwittingly installed into our computers because they come bundled with some freeware and shareware programs that are downloadable from the...
 
 
 
 
 
Expand article

Combating Computer

2007-08-01 19:16:00 by jack in adware and spyware
 
...strings attached. Companies usually pay freeware or shareware creators to be able to capitalize and prey on unsuspecting individuals who download these programs. Adware cause unsolicited pop up advertisements in your computer and in severe cases, adware causes pop up advertisements to pop up soon as you boot your system Spyware on the other...
 
 
 
 
 
Expand article

The two faces or Privila

The Article has images
2008-03-06 19:02:12 by Steven J. Murdoch in Light Blue Touchpaper
...strings I expect the interns who wrote these articles will be displeased that their articles are hidden from view. Google will doubtlessly be interested too, since their webmaster guidelines recommend against such behavior. BMW and Ricoh were delisted for similar reasons. Fortunately for Google, Ive already shown how to build a complete list...
 
 
 
 
 
Expand article

The two faces of Privila

The Article has images
2008-03-06 19:02:12 by Steven J. Murdoch in Light Blue Touchpaper
...strings I expect the interns who wrote these articles will be displeased that their articles are hidden from view. Google will doubtlessly be interested too, since their webmaster guidelines recommend against such behavior. BMW and Ricoh were delisted for similar reasons. Fortunately for Google, Ive already shown how to build a complete list...
 
 
 
 
 
Expand article

Sitting on your hands is not an option - FUD, Compliance, what will it take to sell security?

2008-03-13 00:17:43 by HASH0x84729f8 in StillSecure, After All These Years
 
...strings like a real live security "incident". However, we can't as an industry rely on a security breach happening at the moment a customer is contemplating a security purchase to drive the sale through What does drive the security sale? Over my years in security I have seen the answer change from FUD to compliance. There was a time when to...
 
 
 
 
 
Expand article

Network Security It Takes a Village

2008-05-14 13:05:15 by Louis DiMeglio in ScienceLogic
 
...strings to see if any would work. Malicious or Not? Ill let you guys take this one. Personally I dont think they meant it to be malicious, but as a monitoring tool in this space, they should have known that doing all that scanning would actually degrade network and other vendors device performance. I wonder if this is the vendor that was...
 
 
 
 
 
Expand article

Trip Report: PH-Neutral

The Article has images
2008-05-28 20:56:40 by Chris Eng in Zero in a bit
...strings in the constant pool, or the existence of various obfuscation techniques. Ultimately, there are false positive issues to be addressed but that is just a fact of life with static analysis, and it will be an iterative process to refine those heuristics as the attack vectors evolve. I thought this talk was particularly timely given the...
 
 
 
 
 
Expand article

Cross-Device-Type Log Management vs Device-Specific Log Management

2008-06-02 14:38:00 by Dr Anton Chuvakin in Anton Chuvakin Blog -