Showing posts with label Web Security. Show all posts
Showing posts with label Web Security. Show all posts

Sunday, January 13, 2013

Java 7 vulnerability

Here's the U.S. DHS advisory concerning the Java 7 security issue, along with the steps to take to address it. Interestingly, this basic information has been missing from most of the media reporting I've seen.

Saturday, July 31, 2010

SSL may not be good enough...

Some interesting findings were presented at this year's Black Hat conference. See this AP story to read more. This conference take-away recap is also interesting.

Friday, February 20, 2009

Jeremiah Grossman

Another "must see" speaker. I've heard him speak twice at local OWASP meetings and both times it was a jaw dropping experience. Jeremiah shows how easy it is for an intermediate or injected proxy to take control of a browser or even the entire Windows desktop. You'll never feel quite as confident spending that next paycheck on-line, but hey, you'll be educated about what to look out for, too. Jeremiah makes it clear why security matters, and why it should be a design/implementation consideration from the beginning for any application on the network.

See his Blog at http://www.jeremiahgrossman.blogspot.com/

Oh, and check out the WASC website, too.