web application security

Related Event: Returning into the PHP Interpreter – Remote Exp...

Planet PHP  Fri, 05/21/2010 - 03:16

On 18th of June 2010 Stefan Esser will present his PHP memory corruption exploitation talk at SyScan Singapore ‘10.

The talk is about returning into the PHP interpreter from a remotely triggered memory corruption vulnerability in PHP.

The vulnerability discussed will not be disclosed to the public during the Month of PHP Security.

Returning into the PHP Interpreter

Remote Exploitation of Memory Corruptions in PHP is not over, yet.


 

Announcing the Web Application Security Scanner Evaluation Crite...

Linux Today  Thu, 10/08/2009 - 21:02

Web Application Security Consortium: "Web Application Security Scanners are automated tools to test web applications for common security problems such as Cross-Site Scripting, SQL Injection, Directory Traversal, insecure configurations, and remote command execution vulnerabilities."


 

WASC Honeypot Opens Up With Open Source mod_security

Linux Today  Wed, 07/29/2009 - 08:02

InternetNews: "The idea behind the IT security concept known as the honeypot is all about luring hackers into a server or network so they can be tracked.

The Web Application Security Consortium (WASC) has its own particular brand of honey to attract would-be attackers -- a blend of open source and open proxies."