RSS CGISecurity.com: Your Web Site and Application Security Resource

cgisecurity has been providing news on application security, database security, website security, vulnerability assessment, and more since 2000.
iNeZha robot will deliver the feed updates to your IM or Email in real-time

Delivery Demo of iNezha MSN Robot

Subscribe it
iNezha robot say:
CGISecurity.com: Your Web Site and Application Security Resource
Title:Automated security testing & its limitations
Summary:"The team I work in uses both automated scanners, along with a few humans testing (minimum of 2)… A ... (11/20/2008 9:44:29 AM)
Subscribe it

About "CGISecurity.com: Your Web Site and Application Security Resource"

Author:Claim it now
Website:http://www.cgisecurity.com/
RSS:http://www.cgisecurity.com/index.rss
Update interval: 2 days
Last update: 2 days ago
Tags:
Subscribers:1
Shared Subscribers:1
Bookmarked or Shared Articles:0  

Recent contents of "CGISecurity.com: Your Web Site and Application Security Resource"

Automated security testing & its limitations 2 days ago Read More http://www.cgisecurity.net/2008/11/automated-secur.html
"The team I work in uses both automated scanners, along with a few humans testing (minimum of 2)… A good tester should know the weaknesses of the automated testers.. The problem with automated test...
Metasploit Framework 3.2 Released 2 days ago Read More http://www.cgisecurity.net/2008/11/metasploit-fram.html
"Contact: H D Moore FOR IMMEDIATE RELEASE Email: hdm[at]metasploit.com Austin, Texas, November 19th, 2008 -- The Metasploit Projectannounced today the free, world-wide availability of version 3.2 o...
Microsoft to offer free Antivirus 2 days ago Read More http://www.cgisecurity.net/2008/11/microsoft-to-of.html
"Microsoft on Tuesday said it plans to kill off its Windows Live OneCare subscription security service in favor of a free offering that will feature a core of essential anti-malware tools while exc...
Understanding How to Use the Microsoft's Exploitability Index 3 days ago Read More http://www.cgisecurity.net/2008/11/understanding-h.html
"On Oct. 14, 2008, Microsoft added another piece of information to the bulletin summary to better help customers with their risk assessment process: the Exploitability Index. This section is a brie...
Integrity-178B Secure OS Gets Highest NSA Rating, Goes Commercial 3 days ago Read More http://www.cgisecurity.net/2008/11/integrity-178b.html
"An operating system used in military fighter planes has raised the bar for system security as a new commercial offering, after receiving the highest security rating by a National Security Agency (...
MS explains 7-year patch delay 4 days ago Read More http://www.cgisecurity.net/2008/11/ms-explains-7-y.html
"Microsoft has explained why it took seven years to patch a known vulnerability. Fixing the bug earlier would have taken out network applications and potential exploits alike, it explained. Securit...
Firefox 3.0.4 Released to address multiple security flaws 8 days ago Read More http://www.cgisecurity.net/2008/11/firefox-304-rel.html
A handful of security vulnerabilities have been fixed in the latest version of firefox. Fixed in Firefox 3.0.4 MFSA 2008-58 Parsing error in E4X default namespaceMFSA 2008-57 -moz-binding property ...
.NET Framework rootkits - backdoors inside your framework 8 days ago Read More http://www.cgisecurity.net/2008/11/net-framework-r.html
"The paper introduces a new method that enables an attacker to change the.NET language, and to hide malicious code inside its core. It covers various ways to develop rootkits for the .NET framework...
DNS inventor blames wrangling for insecure interweb 9 days ago Read More http://www.cgisecurity.net/2008/11/dns-inventor-bl.html
"DNSSec (Domain Name System Security Extension), which uses digital signatures to guard against forged requests, offers a means of making internet naming systems more secure. But even 15 years afte...
Visa Card Features Buttons and Screen to Generate CCV Dynamically 9 days ago Read More http://www.cgisecurity.net/2008/11/visa-card-featu.html
A co worker sent me this link yesterday afternoon. "Using what appears to be Visa's mutant hybrid of a credit card and a pocket calculator, users can enter their PIN into the card itself and have a...