Web Security

read the latest news and articles regarding the internet security field in order to keep you up to date to this forever changing environment

September 27, 2008

HTML Control Without Javascript.

In some cases users turn off Javascript for some security reasons. HTML has limited scripting, in fact it has almost zero scripting capabilities. Well, that is […]
September 27, 2008

Masking Malware.

Over the weekend I thought about new ways in which someone can mask malware for the web. Today malware writers use a big chain of iframes […]
September 27, 2008

Flash, Fuzzing and Girls.

A short update of developments this week. Let's start with how to impress girls. I just read some slides from Blackhat, and one that caught my […]
September 27, 2008

Exploiting Apache Tomcat.

You might have seen the new Apache Tomcat <= 6.0.18 vulnerability found by Simon Ryeo[1]. The vulnerability involved a problem in Tomcat with processing UTF-8 encoded […]
September 27, 2008

Surf Jack.

I got into contact with Sandro from enablesecurity a couple of times before. But the last time I talked with him he gave a very interesting […]