Tristan Rivoallan's Bookmarks tagged → View Popular
You are here: Diigo Home > Tristan Rivoallan's Bookmarks
Suspekt… » Blog Archive » Slides from my Lesser Known Security Problems in PHP Applications Talk at ZendCon
more fromwww.suspekt.org
Suspekt… » Blog Archive » Slides from my Lesser Known Security Problems in PHP Applications Talk at ZendCon
more fromwww.suspekt.org
ratproxy - Google Code
A semi-automated, largely passive web application security audit tool, optimized for an accurate and sensitive detection, and automatic annotation, of potential problems and security-relevant design patterns based on the observation of existing, user-initiated traffic in complex web 2.0 environments.
more fromcode.google.com
InfoQ: Presentation: Patterns for securing architectures
Since naming the concepts make discussions easier and because the patterns tell the truth about their trade-offs, security design decisions can thereby be taken more consciously.
In the talk, Peter Sommerlad focuses on patterns such as Role-based Access Control, Single Access Point, and Front Door.
more fromwww.infoq.com
Colin Charles Agenda » Blog Archive » Help, my website has been hacked! Now What?
You are going to get hacked…
- SQL injection
- XSS
- CSRF (cross site request forgery)
- Session Hijacking
more fromwww.bytebot.net
A review of FireEagle's OAuth UI
Usability is one of those very important things that the security world tends to forget. So let’s learn from FireEagle’s example.
more fromstakeventures.com
owasp-esapi-php - Google Code
The purpose of the ESAPI is to provide a simple interface that provides all the security functions a developer is likely to need in a clear, consistent, and easy to use way. The ESAPI architecture is very simple, just a collection of classes that encapsulate the key security operations most applications need.
more fromcode.google.com
Notation: * = Private bookmark and comment|… = Clipping [?] | … = Public highlight [?]


