Home > Security Topics > Application and Platform Security > Application Attacks (Buffer Overflows, Cross-Site Scripting)
Security Topics:
EMAIL THIS
 TOPICS HOME   BROWSE ALL SECURITY TOPICS   SECURITY INFO CENTERS   RESOURCE CENTERS     RSS FEEDS 

Application Attacks (Buffer Overflows, Cross-Site Scripting)


Hackers have moved away from the operating system and are now concentrating much of their efforts on applications. Get the best news and information on defending against common threats such as buffer overflows and cross site scripting in this section.
IN THIS TOPIC:  VIDEO (2) , NEWS (164) , EXPERT TECHNICAL ADVICE (65) , REFERENCE & LEARNING (24) , MAGAZINE CONTENT (3) , WEBCASTS (6) , DEFINITIONS (12)

MUST READ
SQL injection protection: A guide on how to prevent and stop attacks
LEARNING GUIDE - In this SQL injection protection guide get advice on how to prevent and stop SQL injection attacks, also learn best practices on how to detect vulnerabilities.

  VIDEO: 1 - 2 of 2
Balancing security and performance: Protecting layer 7 on the network
SearchSecurity.com | 21 May 2009
VIDEO - This video will explain options for securing application-layer traffic using network security technologies, architectures and processes, including Layer 7 switches, firewalls, IDS/IPS, NBAD and more.
Defending against Internet security threats and attacks
SearchSecurity.com | 24 Dec 2008
VIDEO - From buffer overflows to cross-site scripting, Web threats are many. Security researchers at Information Security Decisions 2008 discuss how to keep enterprises safe from these attacks (part 2 of 4).
VIEW ALL VIDEO ON APPLICATION ATTACKS (BUFFER OVERFLOWS, CROSS-SITE SCRIPTING)

  NEWS: 1 - 3 of 164
Adobe warns of critical update for Reader, Acrobat 9.1.3
SearchSecurity.com | 09 Oct 2009
ARTICLE - An Adobe update next week will repair a critical zero-day flaw being actively targeted by attackers.
Experts rebuke programmers who use SQL injection as feature
SearchSecurity.com | 16 Sep 2009
ARTICLE - Security experts point to online advertising campaigns that distributed faulty code to affiliates as the source of spikes in SQL injection attacks.
SANS: Application threats, website flaws pose biggest security threats
SearchSecurity.com | 15 Sep 2009
ARTICLE - A new report from the SANS Institute calls flaws in client-side applications often the most ignored by IT professionals.
VIEW ALL NEWS ON APPLICATION ATTACKS (BUFFER OVERFLOWS, CROSS-SITE SCRIPTING)

  EXPERT TECHNICAL ADVICE: 1 - 3 of 65
Black box and white box testing: Which is best?
18 Nov 2009
TIP - There's no question that testing application security is essential for enterprises, but which is better: black box or white box security testing? Learn more in this expert tip.
PCI management: The case for Web application firewalls
23 Apr 2009
TIP - Expert Michael Cobb lays out the compliance and security benefits of Web application firewalls.
How to detect input validation errors and vulnerabilities
02 Apr 2009
EXPERT ANSWER - Expert John Strand reviews how to spot input validation flaws on your websites.
VIEW ALL EXPERT TECHNICAL ADVICE ON APPLICATION ATTACKS (BUFFER OVERFLOWS, CROSS-SITE SCRIPTING)

  REFERENCE & LEARNING: 1 - 3 of 24
Quiz: How to build secure applications
SearchSecurity.com | 19 Nov 2009
QUIZ - Use this five-question quiz to test your knowledge of how to secure your enterprise apps.
Buffer overflow tutorial: How to find vulnerabilities, prevent attacks
06 Oct 2009
LEARNING GUIDE - Buffer overflow exploits and vulnerabilities can lead to serious harm to Web applications, as well as embarrassing and costly data security breaches and system compromises.
SQL injection protection: A guide on how to prevent and stop attacks
25 Sep 2009
LEARNING GUIDE - In this SQL injection protection guide get advice on how to prevent and stop SQL injection attacks, also learn best practices on how to detect vulnerabilities.
VIEW ALL REFERENCE & LEARNING ON APPLICATION ATTACKS (BUFFER OVERFLOWS, CROSS-SITE SCRIPTING)

  MAGAZINE CONTENT (free subscription required): 1 - 3 of 3
Developers Need Help with Security Errors
Information Security Magazine | 08 Oct 2009
FEATURES - SQL injection attacks continue to plague Web applications. Companies need to invest in technology and education to hold off hackers.
9 Ways to Improve Application Security After an Incident
Information Security Magazine | 08 Oct 2009
FEATURES - Application and security teams work in silos and often meet only after an attack. Here are nine tips to prevent future costly incidents and improve application security.
The Pipe Dream of No More Free Bugs
Information Security Magazine | 07 May 2009
COLUMNS - Security researchers have declared they want vendors to compensate them for their independent search for vulnerabilities.
VIEW ALL MAGAZINE CONTENT ON APPLICATION ATTACKS (BUFFER OVERFLOWS, CROSS-SITE SCRIPTING)

  WEBCASTS: 1 - 3 of 6
How to Defend Your Organization from Web-Based Threats while Hackers Move into Business Mode - Vendor Webcast

VIEW WEBCAST
PREMIERED:   16 NOV 2006, 12:00 EST (17:00, GMT)
SUMMARY:   This webcast takes a glance ahead at the types of threats expected in 2007, what you can expect and how to be prepared to meet the challenge of these evolving threats. Prepare your company to defend against future web and hacker threats and attend this webcast today.
Web-Borne Attacks: Security Audits Expose the Silent Threat to Corporate Networks - Vendor Webcast

VIEW WEBCAST
PREMIERED:   23 MAY 2006, 14:00 EDT (18:00, GMT)
SUMMARY:   Check out this webcast and discover effective strategies to defend Web-based threats and protect your company's valuable data.
Aware Defense: Trends in Spyware, Adware, and Potentially Unwanted Applications - Vendor Webcast

VIEW WEBCAST
PREMIERED:   11 MAY 2006, 14:00 EDT (18:00, GMT)
SUMMARY:   Join Peter Firstbrook, Gartner Research Director, as he examines the latest trends and issues in spyware, adware and potentially unwanted applications (PUAs).
VIEW ALL WEBCASTS ON APPLICATION ATTACKS (BUFFER OVERFLOWS, CROSS-SITE SCRIPTING)

  DEFINITIONS: 1 - 3 of 12
JavaScript hijacking
20 Jun 2007
WORD - JavaScript hijacking is a technique that an attacker can use to masquerade as a valid user and read sensitive data from a vulnerable Web application, particularly one using Ajax (Asynchronous JavaScript and XML). Nearly all ...
cache poisoning
03 May 2005
WORD - Cache poisoning, also called domain name system (DNS) poisoning or DNS cache poisoning, is the corruption of an Internet server's domain name system table by replacing an Internet address with that of another, rogue address. ...
dictionary attack
21 Apr 2005
WORD - A dictionary attack is a method of breaking into a password-protected computer or server by systematically entering every word in a dictionary as a password. A dictionary attack can also be used in an attempt to find the key ...
VIEW ALL DEFINITIONS ON APPLICATION ATTACKS (BUFFER OVERFLOWS, CROSS-SITE SCRIPTING)

SEE ALSO - Topics Related to Application Attacks (Buffer Overflows, Cross-Site Scripting): 
Virtualization Security Issues and Threats, Email Protection, IM Security Issues, Risks and Tools, Software Development Methodology, Web Security Tools and Best Practices, Enterprise Vulnerability Management, Application Firewall Security, Securing Productivity Applications, Database Security Management, Operating System Security, Open Source Security Tools and Applications, Secure SaaS: Cloud services and systems



Find the Right Application Attacks (Buffer Overflows, Cross-Site Scripting) Solution

TechTarget Security Media
Information Security View this month\\'s issue and subscribe today.
Information Security Decisions Apply online for free conference admission.
SearchSecurity.com
HomeNewsMagazineMultimediaWhite PapersLearningAdviceTopicsEventsAbout Us

About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2003 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts