Sign in
Anmol Malhotra : Reading a Hacker's Mind
Lets Talk about SeCuRiTy
Translate This Page
Translate this page
Powered by
Microsoft® Translator
Options
About
Email Blog Author
RSS for posts
Atom
RSS for comments
OK
Search
Tags
ACE Team
Application Security
Authentication
Cross site scripting
Digital Identity
input validation
Microsoft Information Security
MS-IT
Personal
security
Security Tools
TechMela
Threat Modeling
web security
XSS
Archive
Archives
April 2009
(1)
March 2009
(1)
February 2009
(1)
February 2008
(1)
January 2008
(1)
October 2007
(2)
September 2007
(1)
July 2007
(1)
June 2007
(3)
May 2007
(1)
April 2007
(1)
February 2007
(5)
January 2007
(2)
Posts
Subscribe via RSS
Sort by:
Most Recent
|
Most Views
|
Most Comments
Excerpt View
|
Full Post View
Anmol Malhotra : Reading a Hacker's Mind
New Security Testing Tool is out called - "Watcher"
Posted
over 4 years ago
by
anmolm
1
Comments
Talking to Bryan Sullivan on the SDL team last week, I came to know about a cool new security testing tool - "Watcher". This is a plugin to web debuging proxy Fiddler and checks for more than 35 different vulnerabilites. Yes, its Free!! This new plugin...
Anmol Malhotra : Reading a Hacker's Mind
Microsoft IT Information Security (InfoSec) - New Site
Posted
over 4 years ago
by
anmolm
1
Comments
We’ve recently launched a site on MSDN. Visit Microsoft IT's Information Security (InfoSec) group here . On the site, you'll find the latest news on InfoSec including security tools, webcasts and “How do I?” videos. If you’re not familiar with InfoSec...
Anmol Malhotra : Reading a Hacker's Mind
February 25, 2009: MSDN Webcast Software Security with Static Code Analysis Using CAT.NET (Level 200)
Posted
over 4 years ago
by
anmolm
0
Comments
CLICK HERE TO REGISTER NOW Presenter: Andreas Fuchsberger, Senior Software Design Engineer, Microsoft Corporation Summary : In this webcast, we provide an overview of what static code analysis is and typical coding errors that static analysis...
Anmol Malhotra : Reading a Hacker's Mind
Discover the New HelloSecureWorld Security Resource
Posted
over 5 years ago
by
anmolm
1
Comments
www.HelloSecureWorld.com provides a powerful experience for promoting security awareness and education in the developer community by surfacing existing content as well as new. Well, If you like learning while having FUN then hellosecureworld.com is...
Anmol Malhotra : Reading a Hacker's Mind
First Line of Defense for Web Applications - Blog series
Posted
over 5 years ago
by
anmolm
1
Comments
Hello folks, I just completed my blog series on Input Validation Strategies on our hackers blog - http://blogs.msdn.com/hackers Dan Cornell summarized this series perfectly on his blog http://denimgroup.typepad.com/denim_group/2008/01/first-line-of...
Anmol Malhotra : Reading a Hacker's Mind
XSSDetect Public Beta now Available!
Posted
over 6 years ago
by
anmolm
1
Comments
XSSDetect is available for download now. It's tool which helps identify Cross Site Scripting Vulnerabilities in .NET code. XSSDetect runs as a Visual Studio plug-in and can detect potential XSS issues in managed code. Here's a screenshot: ...
Anmol Malhotra : Reading a Hacker's Mind
How to Prove your Digital Identity?
Posted
over 6 years ago
by
anmolm
2
Comments
Abstract: With the dawn of the internet, online businesses and millions of applications have become part of our lives. But these application and its users does face many challenges. Applications level threats have grown tremendously. Online identity...
Anmol Malhotra : Reading a Hacker's Mind
I am in Redmond now.....
Posted
over 6 years ago
by
anmolm
1
Comments
Hello folks, It's been a while since my last blog. Well I have been keeping busy with relocating all the way from India to US. Yes, I have now joined Microsoft -Redmond team. Leaving a country is not all an easy task folks but i am glad things went...
Anmol Malhotra : Reading a Hacker's Mind
Web Application Security Basics - Strong Naming an Assembly
Posted
over 6 years ago
by
anmolm
0
Comments
Strong Naming an Assembly: Assembly should be strongly named à Proves the integrity of the Assembly and provides a means using which an Assembly is uniquely identified. Concept: To prove the integrity of the assembly, firstly the hash of the assembly...
Anmol Malhotra : Reading a Hacker's Mind
TechMela'07 My Threat Modeling Session details........
Posted
over 6 years ago
by
anmolm
1
Comments
Folks, Here are my session details for TechMela 2007 My deep dive session is scheduled for 16th June : 11:00 AM to 12:00 PM : Threat Modeling Strategy for LOB applications. You can checkout more details here... http://www.techmela.com/speaker.htm &...
Anmol Malhotra : Reading a Hacker's Mind
ACE is Hiring again ................ Security Folks in Hyderabad India
Posted
over 6 years ago
by
anmolm
0
Comments
Hi Guys, We are Hiring in Microsoft ACE- Application Consulting and Engineering Team. Positions are based out of Hyderabad, India campus. We are looking for folks with profile something similar to this- http://blogs.msdn.com/ace_team/archive/2006/07/14...
Anmol Malhotra : Reading a Hacker's Mind
I am gonna Rock TechMela 2007 [13th - 16th June]
Posted
over 6 years ago
by
anmolm
0
Comments
Hi guys, I am going to present deep dive session on Threat Modeling Process and our very own Threat analysis and modeling Tool - TAM in TechMela 2007 in Mumbai [13th - 16th June] For more information on the event registerations, sessions...
Anmol Malhotra : Reading a Hacker's Mind
Cross – Site Scripting Test Case -
Posted
over 6 years ago
by
anmolm
1
Comments
Check for persistent Cross attack-Site Scripting bugs through the input form fields Steps: o Identify entry points that collect user input such as Form inputs [e.g text boxes], query string parameters, etc. o Check if the user input saved to...
Anmol Malhotra : Reading a Hacker's Mind
Is there a Firewall for Humans ??
Posted
over 6 years ago
by
anmolm
0
Comments
<Alice> Good Morning, this is Company’s Technical Support, I am Alice speaking, how can I help you? <Bob> Hi Good Morning Alice, this is Bob Davis- Head of Marketing and sales. I am in the middle of a presentation with one of the biggest...
Anmol Malhotra : Reading a Hacker's Mind
Security Tools for Testers- Part II
Posted
over 6 years ago
by
anmolm
1
Comments
Welcome to the Security Tools for Testers Part II, in Part I we looked at security tools available for developers which can enable them to indentify security issues upfront in the development cycle. Let’s move up the chain and see what tools testers can...
Anmol Malhotra : Reading a Hacker's Mind
Heaviest spell of February snowfall Sunday since 1990 in my hometown-SHIMLA
Posted
over 6 years ago
by
anmolm
1
Comments
http://www.dailyindia.com/show/114325.php/Snow-the-white-gold-of-Himachal My friend ashish emailed me some new pictures of shimla covered in white gold this morning. Beautiful is the word. Cheers, Anmol Malhotra
Anmol Malhotra : Reading a Hacker's Mind
White Hats and Black Hats battle for Security
Posted
over 6 years ago
by
anmolm
0
Comments
An excellent video showcasing a security battle between white hats & black hats folks. The code room breaking into Vegas video narrates a story how bad guys hack in to an online casino in Las Vegas & how security guys pitch in for rescue. Cool...
Anmol Malhotra : Reading a Hacker's Mind
Are your COM+ Proxies secure ??
Posted
over 6 years ago
by
anmolm
0
Comments
Here is an interesting security issue on COM+ proxies. It is such a biggy in terms of exposure & impact it has on the application. My customer was facing this issue where the generated COM+ proxies had all the source code of the services component...
Anmol Malhotra : Reading a Hacker's Mind
Running Multiple ASP.NET applications SECURELY on a single web server
Posted
over 6 years ago
by
anmolm
1
Comments
Today I am going to talk about some security considerations to keep in mind when hosting multiple un trusted .NET applications on a single Server. Concerns : 1. I am an Internet Service Provider which also offers shared hosting services for clients...
Anmol Malhotra : Reading a Hacker's Mind
Security tools for Developers – Part I
Posted
over 6 years ago
by
anmolm
0
Comments
Security tools for Developers – Part I The first line of defence is the developers of applications. If they are equipped with security know/how & various tools available upfront during the development cycle there would be far lesser number of security...
Anmol Malhotra : Reading a Hacker's Mind
Here it goes..................:)
Posted
over 6 years ago
by
anmolm
1
Comments
Hello everyone, my name is Anmol Malhotra and I work as a security technologist with ACE [ Application Consulting & Engineering] team in Microsoft. In this blog, I am going to share my thoughts, experiences around application security & security...
Page 1 of 1 (21 items)