Test your browser for Clickjacking protection - Hanno's Blog
september 2010 by lstrojny
Preventing a site from being embedded via iframe policy header
html
security
web
september 2010 by lstrojny
Strong CAPTCHA Guidelines
december 2009 by lstrojny
An introduction to developing secure CAPTCHA systems. In addition to describing common weaknesses in CAPTCHA puzzles, focus is placed on the system as a whole, including replay detection and attack detection.
captcha
security
development
ocr
december 2009 by lstrojny
aSSL - Ajax Secure Service Layer
august 2009 by lstrojny
aSSL enables the client to negotiate a secret random 128-bit key with the server using the RSA algorithm. Once the connection has been established, the data will be sent and received using AES algorithm.
javascript
encryption
library
ssl
security
ajax
august 2009 by lstrojny
HTML Control Without Javascript
september 2008 by lstrojny
label for=<id> is already scripting
javascript
security
html
september 2008 by lstrojny
Sam Ruby: X-Content-Type-Options: nosniff
september 2008 by lstrojny
Sending the new X-Content-Type-Options response header with the value nosniff will prevent Internet Explorer from MIME-sniffing a response away from the declared content-type.
security
ie
browser
september 2008 by lstrojny
mt_srand and not so random numbers
august 2008 by lstrojny
Weak random numbers from mt_rand() and rand() in PHP
cryptography
php
security
august 2008 by lstrojny
MySQL-Proxy Heuristic SQL Injection Detection
august 2008 by lstrojny
Automatically finding SQL injections with a LUA script sitting in MySQL Proxy
mysql
lua
security
sql
august 2008 by lstrojny
apache-scalp - Google Code
july 2008 by lstrojny
A logfile analyzer based on our famous PHPIDS intrusion detection rules
phpids
logging
monitoring
security
xss
july 2008 by lstrojny
related tags
administration ⊕ ajax ⊕ api ⊕ architecture ⊕ authentication ⊕ authorisation ⊕ browser ⊕ business ⊕ captcha ⊕ clickjacking ⊕ cryptography ⊕ csrf ⊕ cups ⊕ design ⊕ development ⊕ eclipse ⊕ encryption ⊕ esapi ⊕ exploit ⊕ fail ⊕ firefox ⊕ framework ⊕ html ⊕ http ⊕ ie ⊕ israel ⊕ java ⊕ javascript ⊕ library ⊕ linux ⊕ logging ⊕ lua ⊕ monitoring ⊕ mysql ⊕ network ⊕ nginx ⊕ ocr ⊕ owasp ⊕ php ⊕ phpids ⊕ printer ⊕ programming ⊕ security ⊖ server ⊕ shell ⊕ sql ⊕ ssh ⊕ ssl ⊕ startups ⊕ sysadmin ⊕ testing ⊕ unix ⊕ web ⊕ xss ⊕Copy this bookmark: