WebApp Sec: by date

88 messages starting Jan 06 08 and ending Mar 28 08
Date index | Thread index | Author index


Sunday, 06 January

Welcome to a new year at WebAppSec Andrew van der Stock

Wednesday, 09 January

SQL Injection: Issue with UNION SELECT ALL Joseph McCray
RE: SQL Injection: Issue with UNION SELECT ALL Calderon, Juan Carlos (GE, Corporate, consultant)
OWASP Asia Pacific & Australia Application Security Conference FEB 2008 Justin Derry

Thursday, 10 January

Encrypted cookies Ron
Re: Encrypted cookies Andrew van der Stock
Re: Encrypted cookies Andy Steingruebl
Re: Encrypted cookies Lucas Oman
Re: Encrypted cookies Rico Secada
RE: Encrypted cookies Brokken, Allen P.

Friday, 11 January

Fw: Re: Encrypted cookies Rico Secada
Re: Encrypted cookies Andy Steingruebl
Re: Encrypted cookies Orlin Gueorguiev

Sunday, 13 January

Re: [WEB SECURITY] Deploying WAFs In Listening-Only Mode - Waste of Money? Ryan Barnett
Re: [WEB SECURITY] Deploying WAFs In Listening-Only Mode - Waste of Money? Ivan Ristic
RE: [WEB SECURITY] Deploying WAFs In Listening-Only Mode - Waste of Money? Ofer Shezaf
Re: [WEB SECURITY] Deploying WAFs In Listening-Only Mode - Waste of Money? Ryan Barnett

Monday, 14 January

Re: [WEB SECURITY] Deploying WAFs In Listening-Only Mode - Waste of Money? Henry Troup
Re: [WEB SECURITY] Deploying WAFs In Listening-Only Mode - Waste of Money? Ryan Barnett

Tuesday, 15 January

Re: Fw: Re: Encrypted cookies Ron

Wednesday, 16 January

RE: [WEB SECURITY] Deploying WAFs In Listening-Only Mode - Waste of Money? Ofer Shezaf

Sunday, 20 January

RE: [WEB SECURITY] Deploying WAFs In Listening-Only Mode - Waste of Money? sankalpa h
New search engine for exploits Security Basic

Tuesday, 22 January

sqlninja 0.2.2 released A. R.

Friday, 25 January

wfuzz v1.4 - The web bruteforcer Christian Martorella
Apache mod_negotiation Xss and Http Response Splitting Minded Security Research Labs
Web Application Security mahendra_yn
extra dot on domain name gives different site Robin Wood

Saturday, 26 January

Re: extra dot on domain name gives different site Eric Marden
Re: extra dot on domain name gives different site Robert Hajime Lanning
Re: extra dot on domain name gives different site Robin Wood

Thursday, 31 January

Tool to test SAML artifacts and assertions Philip Cox

Friday, 08 February

Re: Tool to test SAML artifacts and assertions ' =JeffH '

Monday, 11 February

Insomnia: Tool Release - InsomniaShell.aspx Brett Moore

Tuesday, 12 February

Thanks to all, ExploitSearch in Top5 security must-have Security Basic

Wednesday, 13 February

IIS 6 SQL Injection Prevention ISAPI (GNU License) Rodney Viana (Plenux)

Thursday, 21 February

Certification for Web Application Security Professionals Anurag Agarwal
AJAX Concept Question Mat

Friday, 22 February

Re: AJAX Concept Question Charles Miller
Re: AJAX Concept Question Peter Conrad
RE: AJAX Concept Question Jason Karlin
CanSecWest 2008 Mar 26-28 Dragos Ruiu

Monday, 25 February

Web Services Security Training Course (NYC - March 10 & 11, 2008) Peter Soderling

Thursday, 06 March

post vulnerability scenario davemitch

Monday, 10 March

Re: Web Application Security Javier Fernandez-Sanguino
Re: extra dot on domain name gives different site Javier Fernandez-Sanguino

Tuesday, 11 March

Re: Web Application Security Zack Peters
RE: Web Application Security Jayaraman, Anand X.

Wednesday, 12 March

RE: Web Application Security Ofer Shezaf
AW: post vulnerability scenario Martin Muench

Thursday, 13 March

Plone CMS Security Research: the Art of Plowning Adrian Pastor

Saturday, 15 March

Black Hat Announcements: New CFP system and Japan '08 confirmed jmoss

Monday, 17 March

Troopers08 Security Conference, 23/24 April (Munich/Germany) Enno Rey

Tuesday, 18 March

PHP Security Greg Song
web application scanning tool - any unsecure demo sites out there to run them against? bigbert007
CSRF attack in Firefox Vishal Garg
Fwd: Re: web application scanning tool - any unsecure demo sites out there to run them against? RUI PEREIRA - WCG
Re: CSRF attack in Firefox Jamie Riden
Re: CSRF attack in Firefox Ali, Saqib
RE: Re: web application scanning tool - any unsecure demo sites out there to run them against? Thakrar, Saurabh
Re: web application scanning tool - any unsecure demo sites out there to run them against? bigbert007
RE: web application scanning tool - any unsecure demo sites out there to run them against? Darren Webb
RE: web application scanning tool - any unsecure demo sites out there to run them against? Chris Grove
Re: PHP Security Greg Song
Re: PHP Security Eduardo Tongson
Re: PHP Security Eric Marden
Re: PHP Security Greg Song

Wednesday, 19 March

AW: web application scanning tool - any unsecure demo sites out t here to run them against? Martin Muench

Thursday, 20 March

Release of webshag 1.00! webshag

Friday, 21 March

[MSA01240108] IE7 Transfer-Encoding: chunked allows Request Splitting/Smuggling. Minded Security Research Labs
[MSA02240108] IE7 allows overwriting of several headers leading to Http request Splitting and smuggling. Minded Security Research Labs
CanSecWest 2008 PWN2OWN - Mar 26-28 Dragos Ruiu

Tuesday, 25 March

OpenID and the web Steven Rakick
Re: OpenID and the web David Wall
Re: OpenID and the web David Wall
Re: OpenID and the web Adrian Migraso

Wednesday, 26 March

Re: OpenID and the web Eric Marden
Re: OpenID and the web Babu.N

Thursday, 27 March

Re: OpenID and the web Razi Shaban
Re: OpenID and the web Jeff Robertson
RE: OpenID and the web Calderon, Juan Carlos (GE, Corporate, consultant)
Re: OpenID and the web David Wall
Re: OpenID and the web Lucas Oman
Re: OpenID and the web Razi Shaban
Re: OpenID and the web Pete Jansson
Re: OpenID and the web baldr
Re: OpenID and the web Jeremiah Cornelius

Friday, 28 March

RE: OpenID and the web Chris Grove