Home Blog Page 9

ASP Auditor v2 BETA

ASP auditor v2 BETA Author david.kierznowski_at_gmail.com http://michaeldaw.org purpose: Look for common misconfigurations and information leaks in ASP.NET applications. # Changelog: # --v2.2-- 20/Apr/07 # * Added additional support for Anti-XSS Validation...

Bypassing ASP.NET XSS Filters

pagvac from ProCheckUp released an advisory on how to bypass ASP.NET XSS validation. This attack is only possible with Internet Explorer users as it exploits...

Writing Secure WordPress Plugins

Introduction WordPress has become one of the most popular blogging packages on the Internet; this is largely due to its ease of use and its...

Michael Daw Anthology

michaeldaw.org is pleased to announce the first “Michael Daw Anthology” award. For those of you curious, anthology is a collection of published works. The original...

Hotlinks and Persistent CSRF

is the placing of a linked object, often an image, from one site into a web page belonging to a second site. The...