Lindsay Donaghe's Library tagged → View Popular
Coding Horror: Cross-Site Request Forgeries and You
Explanation of and advice for handling common attacks through websites. Cross-Site Request Forgeries with a little bit of Cross-Site Scripting.
Ajaxian » Simon Willison, @Media Ajax
Nice article on how to make Ajax applications more secure and resistant to things like cross-site scripting (xss) and cross-site request forgery (csrf).
mashed life
Single Sign-On To The Entire Web In The Web Way
* Log in to any site from any browser on any PC
* No need to install any plug-in or software
* Log in to any of your accounts with just 1 click
* Stop using Browser's password manager! Why?
* All data is strongly encrypted, privacy protected
A MP3 Steganographic File System Approach » The Zana Zen
An interesting idea for using "ordinary" files to hide sensitive information, as a file-system.
TrueCrypt - Free Open-Source On-The-Fly Disk Encryption Software for Windows Vista/XP, Mac OS X and Linux
- "# Creates a virtual encrypted disk within a file and mounts it as a real disk. # Encrypts an entire hard disk partition or a device, such as USB flash drive. # Encryption is automatic, real-time (on-the-fly) and transparent." - bluecockatoo on 2006-08-23
Message Vault
An implementation of TiddlyWiki that encrypts each of the tiddlers you create so that you can pass it on to others in a secure fashion. Seems like it might be a useful alternative for a password archive.
Password Strength Checker
A tool that lets you test how strong your passwords are. It ranks based on a lot of different factors and gives instant feedback via color to let you know how strong the password actually is.
Password Safe
A free, opensource, software app that keeps track of your accounts and passwords for an unlimited number of services. The problem is that if you use multiple computers all your passwords don't come with you...
5 signs your ASP.NET application may be vulnerable to HTML injection » DamienG
Article with examples of how to use Html encoding to prevent succeptability to XSS in ASP.Net web pages.
... In Which We Discuss HTML-Encoding : Rob Conery
Discussion and some responses about HTML encoding in MVC as a means to prevent XSS. Gives some good links to XSS examples and resources.
Steve Sanderson’s blog » Blog Archive » ASP.NET MVC: Prevent XSS with automatic HTML encoding
Tutorial with demo code you can use to change the default behavior of <%= ... %> so that the output is Html encoded. Useful for prevention of XSS but not tested in many situations yet for robustness.
Blocking Direct Access To Views in ASP.NET MVC
Handy bit of code in web.config to prevent people from navigating directly to a view.
Using jQuery to Consume ASP.NET JSON Web Services | Encosia
There's a snippet here about what Ajax settings to use for JQuery communicating with ASP.Net.
How Vista Lets Microsoft Lock Users In - News by InformationWeek
- Interesting article but is it mostly FUD? Not sure since I like Cory Doctrow... - bluecockatoo on 2007-02-01
Flickcha - a little mashlet on TWOCrowds
- Interesting use of flickr to create a catchpa, but has several "holes" as pointed out here... still something to think about more as a possibility... - bluecockatoo on 2006-09-25
Poxy
- A tool to allow you to browse through a proxy so that you can avoid abitrary security restrictions. - bluecockatoo on 2006-08-23
hidetext.net - become ungoogable - leave no traces - anonymous web browsing, free privacy service.
- Converts text to an image that you can post in public places instead... basically to keep spiders and screen scrapers from getting the plain text info... obfuscation, not fullproof security, but handy in the right situations. - bluecockatoo on 2006-08-23
Grisoft Freeweb: AVG Free Edition
- Free anti-virus program that works well. - bluecockatoo on 2006-08-23
Tempinbox.com - ENGLISH - FREE, RECEIVE ONLY, TEMPORARY, THROWAWAY, E-MAIL ACCOUNTS
- A service that lets you create a temporary email address that you can receive (not send) emails from for several days to keep you from having to use your real one to sign up for things and start getting spam. - bluecockatoo on 2006-08-23
Outlook "Object Model Guard" Security Issues for Developers
- Documentation on how to deal with the security features in Outlook while writing VBA macros for use in Rules. - bluecockatoo on 2006-08-23
Selected Tags
Related Tags
Sponsored Links
Top Contributors
Groups interested in security
-
Online Security
Everything related to onlin...
Items: 4 | Visits: 137
Created by: Call Me What You Want
-
Free Security Software
Free security software to h...
Items: 22 | Visits: 113
Created by: Matt G.
-
Defensive Web Programming
Links that came up during S...
Items: 16 | Visits: 181
Created by: Joel Bennett
Highlighter, Sticky notes, Tagging, Groups and Network: integrated suite dramatically boosting research productivity. Learn more »
Join Diigo
