Sign in
%41%43%45%20%54%65%61%6d
Translate This Page
Translate this page
Powered by
Microsoft® Translator
Options
Email Blog Author
RSS for posts
Atom
RSS for comments
OK
Search
Tags
Cross Site Scripting
hackers
hands on lab on security
hellosecureworld
Input Validation
links
security
security process
tools
Archive
Archives
January 2008
(2)
December 2007
(1)
November 2007
(1)
October 2007
(12)
September 2007
(1)
August 2007
(1)
Posts
Subscribe via RSS
Sort by:
Most Recent
|
Most Views
|
Most Comments
Excerpt View
|
Full Post View
%41%43%45%20%54%65%61%6d
welcome to a different kind of blog from microsoft
Posted
over 6 years ago
by
Techjunkie2
37
Comments
Hello world. Welcome to a new blog from Microsoft. The focus of this blog is likely to be a little different from most other blogs you'll see on blogs.msdn.com. Microsoft employs some of the best hackers in the world and actively recruits them and...
%41%43%45%20%54%65%61%6d
First Line of Defense for Web Applications – Part 4
Posted
over 6 years ago
by
Techjunkie2
8
Comments
I am on a red eye flight back to Seattle from Dulles, VA where I just finished delivering some security training. Traveling back in time, jet lagged, not able to sleep so I thought of finishing my blog post for this week to kill some time. :) Ok, so...
%41%43%45%20%54%65%61%6d
First Line of Defense for Web Applications – Part 1
Posted
over 6 years ago
by
Techjunkie2
4
Comments
Hi folks, I am Anmol Malhotra and I work with ACE Services Team as a security consultant. There are lots of security principles which one should be aware of while developing software but at the heart of any secure application, there should be a first...
%41%43%45%20%54%65%61%6d
First Line of Defense for Web Applications – Conclusion
Posted
over 5 years ago
by
Techjunkie2
4
Comments
Platform features for validating input in .NET Framework There are many platform features which should be leveraged wherever possible. Some of the key validation features supported by .NET framework are given below: ValidateRequest ASP.NET...
%41%43%45%20%54%65%61%6d
Some technical details on how XSSDetect does Dataflow Analysis
Posted
over 6 years ago
by
Techjunkie2
7
Comments
Hi, my name is Hassan Khan. I work for the ACE Engineering Team, which is a part of the ACE (Application Consulting & Engineering) Team . We develop tools and solutions to help secure Microsoft Line of Business applications, websites and also work...
%41%43%45%20%54%65%61%6d
HelloSecureWorld.com Launched
Posted
over 5 years ago
by
Techjunkie2
2
Comments
Discover the New HelloSecureWorld Security Resource www.HelloSecureWorld.com provides a powerful experience for promoting security awareness and education in the developer community by surfacing existing content as well as new. Well, If you like...
%41%43%45%20%54%65%61%6d
First Line of Defense for Web Applications – Part 3
Posted
over 6 years ago
by
Techjunkie2
4
Comments
Precaution: Are you consuming Unexpected Input Technology is developing fast and web programming languages are coming up with features or ways to ease the job of our developers. Although it brings a smile on developers face, there is a flip side to this...
%41%43%45%20%54%65%61%6d
First Line of Defense for Web Applications – Part 2
Posted
over 6 years ago
by
Techjunkie2
2
Comments
Hello everyone, as promised I am back with the next post on input validation series for web applications. Knowledge is power right :). So knowing what all things to validate when you start your web project can save you a lot of headache down the road...
%41%43%45%20%54%65%61%6d
First Line of Defense for Web Applications – Part 5
Posted
over 6 years ago
by
Techjunkie2
2
Comments
First of all folks, my apologies for this delayed post. I have been traveling and busy doing a very interesting Threat Modeling exercise . But i am back & Lets cover some other validation bloopers - SQL injection Weak Validation...
%41%43%45%20%54%65%61%6d
Welcome, finally.
Posted
over 6 years ago
by
Techjunkie2
8
Comments
Over the last several weeks after launching this blog we’ve had several logistical issues to deal with and I’m hoping all of those are now addressed so we can get on with what you’ve been asking for, some great content!! Initially I had named the blog...
%41%43%45%20%54%65%61%6d
Weekend Security Reading Round up Links - 10/5/07
Posted
over 6 years ago
by
Techjunkie2
2
Comments
What's hot in Microsoft security: White lists; Blue hats A discussion on Symantec’s proposal to whitelist everything on a Windows box as well as a summary of Microsoft’s Bluehat 10 Microsoft Security Links to Blow Your Mind Pretty self explanatory...
%41%43%45%20%54%65%61%6d
Update
Posted
over 6 years ago
by
Techjunkie2
3
Comments
Thank you all for the tremendous response and support. I've gotten so many of your messages that I've not been able to respond to them all individually. We are working through some logistical issues but look forward to getting things going very soon....
%41%43%45%20%54%65%61%6d
The difference between pentesting and an application development security process Part I
Posted
over 6 years ago
by
Techjunkie2
3
Comments
Many times when we’re speaking with a customer or reviewing material from security vendors, the inclination we’ve seen is to rely on penetration testing or code analysis/scanning tools and other solutions to make up for the fact that there is no comprehensive...
%41%43%45%20%54%65%61%6d
Weekend Security Reading Round up Links 10/27/07
Posted
over 6 years ago
by
Techjunkie2
1
Comments
Microsoft Research Reveals New Trends in Cybercrime This is well worth reading if you're in Info Sec... I particularly was nodding my head violently yes when I read the following: "The research indicates there are tensions within organizations over...
%41%43%45%20%54%65%61%6d
Securing the Gateway to Your Enterprise: Web Services
Posted
over 6 years ago
by
Techjunkie2
1
Comments
Eugene Siu, a Senior Security Consultant on the ACE Team has just published a great article summarizing some of the pitfalls and issues around web services security. You can read the whole article here. -techjunkie
%41%43%45%20%54%65%61%6d
Mark Curphey joins Microsoft's ACE Team
Posted
over 6 years ago
by
Techjunkie2
1
Comments
We're super excited to have Mark aboard, Mark was formerly running FoundStone Consulting and also founded OWASP . Here's Mark's note about joining and you can also check out Mark's own blog here. -techjunkie
%41%43%45%20%54%65%61%6d
Weekend Security Reading Round up Links - 10/20/07
Posted
over 6 years ago
by
Techjunkie2
1
Comments
Inside the Matrix for Mobiles A pretty interesting concept: hack together a platform for connecting the innards of over one hundred different types of cell phones and then connect them to servers allowing virtual access for testing purposes over the...
%41%43%45%20%54%65%61%6d
Weekend Security Reading Round up Links - 10/12/07
Posted
over 6 years ago
by
Techjunkie2
2
Comments
All about the data: IT security starts with a data-centric worldview ACE Team's Roger A. Grimes has posted a great summary of the importance of having a data-centric way of looking at things for computer/information security to work in an IT environment...
Page 1 of 1 (18 items)