The Web Security Mailing List (2010 January)
- [WEB SECURITY] Cross-Site History Manipulation (XSHM),
Alex Roichman
- [WEB SECURITY] Re: [Webappsec] Paper: Weaning the Web off of Session Cookies,
Arian J. Evans
- [WEB SECURITY] winAUTOPWN 2.1 - Now you can sleep,
QUAKER DOOMER
- [WEB SECURITY] Fingerprinting web applications (Joomla, Mediawiki and Wordpress),
dd
- [WEB SECURITY] WASC RSA Meet-Up 2010!,
Jeremiah Grossman
- [WEB SECURITY] SQL injection into Stored Procedures,
Ray
- [WEB SECURITY] Some Google Chrome and Safari issues,
Argeniss
- [WEB SECURITY] Firefox Observation Plugin Attack,
Ivan Buetler
- [WEB SECURITY] SQL blind injection exercise,
Miguel González Castaños
- [WEB SECURITY] Paper: Weaning the Web off of Session Cookies,
Timothy D\. Morgan
- [WEB SECURITY] Anyone had an experience with CRLF (Hex encoded on output) still triggering?,
robert
- [WEB SECURITY] Methods of quick exploitation of blind SQL Injection,
Dmitry Evteev
- [WEB SECURITY] Methodology framework,
application . secure
- [WEB SECURITY] Web Application Testing (Black Box),
Nitchi DaMon
- [WEB SECURITY] XML security gateways,
Stephen Carter
- [WEB SECURITY] The future of XSS attacks,
MustLive
- [WEB SECURITY] Last Minute Security Tradition and Side-Effects,
Debasis Mohanty
- [WEB SECURITY] Justification for Web Application Security Programme,
spawn of soul calibur
- [WEB SECURITY] Dasient mod_antimalware_lite v0.2,
Neil Daswani
- [WEB SECURITY] OWASP for Charities: Haiti relief effort,
Dinis Cruz
- [WEB SECURITY] Open Source Web Firewall (Part 2) Reverse Proxy with Facebook (Pre-Auth & Session Hiding),
Ivan Buetler
- [WEB SECURITY] ESAPI4JS - Yes that is JavaScript,
Schmidt, Chris
- [WEB SECURITY] Missed pages and the usefulness of "site maps" for web app vuln scanning,
McCown, Christian M
- [WEB SECURITY] Resources on mobile security,
application.secure application.secure
- Re: [WEB SECURITY] Best security improvements of 2009?,
MustLive
- [WEB SECURITY] Adobe Acrobat Script Injection,
Paul Theriault
- [WEB SECURITY] Re:Http Response Splitting,
nilesh kumar
- [WEB SECURITY] Cross Site Identification (CSID) attack. Description and demonstration.,
Ronen Z
- [WEB SECURITY] Call for Papers: i-Society 2010!,
David Brown
- [WEB SECURITY] Call for Papers: ICITST-2010,
d.lin@xxxxxxxxxx
- [WEB SECURITY] Secure Web Application Framework Manifesto,
Rohit Sethi
- [WEB SECURITY] HITB Ezine 'Reloaded' - Issue #001,
Hafez Kamal
- [WEB SECURITY] XSS vulnerabilities in 34 millions flash files,
MustLive
- [WEB SECURITY] Call for Papers: ICITST-2010, Technical Co-Sponsored by IEEE UK/RI Communications Chapter,
d.lin@xxxxxxxxxx
- [WEB SECURITY] Burp Suite v1.3 released,
PortSwigger
- [WEB SECURITY] 2009 - Rise of The Bots,
Raviv Raz
- [WEB SECURITY] Open Source Web Firewall (Part 1) Reverse Proxy with Facebook,
Ivan Buetler
- RE: [WEB SECURITY] Questions about web application penetration testing,
Martin, Christopher
- [WEB SECURITY] Context App Tool - New Web Application Testing,
Context IS - Disclosure
- [WEB SECURITY] Link Injection Redirection Attacks - Exploiting Google Chrome Design Flaw,
Aditya K Sood
- Re: [WEB SECURITY] Questions about web application penetration testing,
Monica Verma
- [WEB SECURITY] Last post,
robert
- [WEB SECURITY] iiScan - Full-function web application security scanning platform for free,
iiScan support
- [WEB SECURITY] http response splitting,
Vicari Marco Vincenzo (UGIS - UniCredit Group)
- [WEB SECURITY] Design and code review requested for Django string signing / signed cookies,
Simon Willison
- [WEB SECURITY] NoScript XSS Injection Checker Unescape Nested URL Optimization Bug,
Aditya K Sood
- [WEB SECURITY] WASC Announcement: WASC Threat Classification v2.0 Published,
robert
- Re: [WEB SECURITY] Disclosure policies?,
LP
Brought to you by http://www.webappsec.org
Search this site
|