January 2007 Archives by date
Starting: Mon Jan 1 05:14:09 EST 2007
Ending: Wed Jan 31 23:10:46 EST 2007
Messages: 220
- [WEB SECURITY] Vulnerability Scanners Review Published
bugtraq at cgisecurity.net
- [WEB SECURITY] img src , cant get it!
Esteban Ribičić
- [WEB SECURITY] Google’s blacklisted url database (phishing url database)
Rajesh Sethumadhavan
- [WEB SECURITY] Sniffing and Backdooring UIML Applications
bugtraq at cgisecurity.net
- [WEB SECURITY] Google's blacklisted url database (phishing url database)
Brad Inscoe
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
pdp (architect)
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Amit Klein
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
sven.vetsch at disenchant.ch
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
pdp (architect)
- [WEB SECURITY] Hacking AJAX DWR Applications
Amichai Shulman
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Richard Moore
- [WEB SECURITY] img src , cant get it!
White, Dain P
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Prasad Shenoy
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Prasad Shenoy
- [WEB SECURITY] Adobe Acrobat Reader Plugin - Multiple Vulnerabilities
Stefano Di Paola
- [WEB SECURITY] Re: Universal XSS with PDF files: highly dangerous
ascii
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Amit Klein
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
James Landis
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
pdp (architect)
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
RSnake
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Jean-Jacques Halans
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
James Landis
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Dave Ferguson
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
pdp (architect)
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Prasad Shenoy
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Amit Klein
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
pdp (architect)
- RE: [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Larry Seltzer
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
bugtraq at cgisecurity.net
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Jim Manico
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
RSnake
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Amit Klein
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
der wert
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
pdp (architect)
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
skarvin
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
HASEGAWA Yosuke
- [WEB SECURITY] Re: Universal XSS with PDF files: highly dangerous
Thierry Zoller
- [WEB SECURITY] Re: [Full-disclosure] Universal XSS with PDF files: highly dangerous
Juha-Matti Laurio
- [WEB SECURITY] Universal PDF XSS After Party
pdp (architect)
- [WEB SECURITY]RE: [Full-disclosure] Universal XSS with PDF files: highly dangerous
Larry Seltzer
- [WEB SECURITY] Re: RE: [Full-disclosure] Universal XSS with PDF files: highly dangerous
Juha-Matti Laurio
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
pst
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Michael Sutton
- [WEB SECURITY] Re: [Full-disclosure] Universal XSS with PDF files: highly dangerous
T Biehn
- [WEB SECURITY]RE: [Full-disclosure] Universal XSS with PDF files: highly dangerous
RSnake
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Martin O'Neal
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Billy Hoffman
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
RSnake
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Martin O'Neal
- [WEB SECURITY] RE: Universal PDF XSS After Party(posible solution)
Noe Espinoza M.
- [WEB SECURITY] Re: [Full-disclosure] Universal PDF XSS After Party(posible solution)
Darren Bounds
- [WEB SECURITY] RE: Universal PDF XSS After Party(posible solution)
RSnake
- [WEB SECURITY] A Tour of the Google Blacklist
Michael Sutton
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
skarvin
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Billy Hoffman
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Ory Segal
- [WEB SECURITY] Re: [Full-disclosure] Universal XSS with PDF files: highly dangerous
pdp (architect)
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Billy Hoffman
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Amit Klein
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
pdp (architect)
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Amit Klein
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
White, Dain P
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Amit Klein
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Mike Metzger
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Guy Podjarny
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Amit Klein
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Mark Andrews
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
White, Dain P
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
James Landis
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Mike Metzger
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
RSnake
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
White, Dain P
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Jean-Jacques Halans
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
White, Dain P
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
James Landis
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Jean-Jacques Halans
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Mike Metzger
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Amit Klein
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Amit Klein
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Martin O'Neal
- [WEB SECURITY] Re: Universal PDF XSS After Party
Maik Mueller
- [WEB SECURITY] Fwd: Re: [Full-disclosure] Universal XSS with PDF files: highly dangerous
Tõnu Samuel
- [WEB SECURITY] Re: [Full-disclosure] Universal XSS with PDF files: highly dangerous
pdp (architect)
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
RSnake
- [WEB SECURITY] Re: [Full-disclosure] Universal XSS with PDF files: highly dangerous
Stefano Di Paola
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
James Landis
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Amit Klein
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Amit Klein
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
James Landis
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Amit Klein
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Jeff Williams
- [WEB SECURITY] Server Obligation for Client Vulnerabilities (was: Universal XSS with PDF files: highly dangerous)
Neil Smithline
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Neil Smithline
- [WEB SECURITY] QASEC Announcement: Writing Software Security Test Cases
bugtraq at cgisecurity.net
- [WEB SECURITY] QASEC Announcement: Writing Software Security Test Cases
Brian Cohen
- [WEB SECURITY] Looking For a Username Dictionary
Jason Wood
- [WEB SECURITY] Looking For a Username Dictionary
H. Morrow Long
- [WEB SECURITY] Looking For a Username Dictionary
Mark Mcdonald
- [WEB SECURITY] Is ^ a dangerous metachar?
Ephraim Dan
- [WEB SECURITY] Is ^ a dangerous metachar?
Haroon Meer
- [WEB SECURITY] QASEC Announcement: Writing Software Security Test Cases
Stephen de Vries
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
pst
- [WEB SECURITY] Is ^ a dangerous metachar?
Brian Eaton
- [WEB SECURITY] Re: [Full-disclosure] [WEB SECURITY] Universal XSS with PDF files: highly dangerous
M.B.Jr.
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
RSnake
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Amit Klein
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Brian Eaton
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Tom Stripling
- [WEB SECURITY] Re: Universal XSS with PDF files: highly dangerous
The Anarcat
- [WEB SECURITY] Re: [Full-disclosure] [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Jim Manico
- [WEB SECURITY] Web Application Security Professionals Survey (Jan. 2007)
Jeremiah Grossman
- [WEB SECURITY] Using .htaccess to protect from XSS attacks
Anurag Agarwal
- [WEB SECURITY] ACL for application
Ankur Jindal
- [WEB SECURITY] Using .htaccess to protect from XSS attacks
RSnake
- [WEB SECURITY] ACL for application
Herbener, Martin - KETS Engineering and Management
- [WEB SECURITY] ACL for application
Mr Zebedee
- [WEB SECURITY] Re: recognising metacharacters as code ( Is ^ a dangerous metachar?)
Brian Eaton
- [WEB SECURITY] ACL for application
Brian Eaton
- [WEB SECURITY] ACL for application
valkyrie at hacktek.com
- [WEB SECURITY] ACL for application
Ankur Jindal
- [WEB SECURITY] ACL for application
Brian Eaton
- [WEB SECURITY] Administrative: List Questionnaire
robert at webappsec.org
- [WEB SECURITY] Automated Scanner vs. The OWASP Top Ten (white paper)
Jeremiah Grossman
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Tom Spector
- [WEB SECURITY] Universal XSS with PDF files: highly dangerous
Marvin Simkin
- [WEB SECURITY] ACL for application
Ankur Jindal
- [WEB SECURITY] Re: Server Obligation for Client Vulnerabilities (was: Universal XSS with PDF files: highly dangerous)
James Landis
- [WEB SECURITY] Disclosure for Web Applications
Jeremiah Grossman
- [WEB SECURITY] Article: A Positive Impact on Web Application Security (About WASC)
robert at webappsec.org
- [WEB SECURITY] Decoding the Google Blacklist
Michael Sutton
- [WEB SECURITY] A Different CSOonline Article calling out the BS in the security industry
robert at webappsec.org
- [WEB SECURITY] A Different CSOonline Article calling out the BS in the security industry
Gervase Markham
- [WEB SECURITY] A Different CSOonline Article calling out the BS in the security industry
Dennis Groves
- [WEB SECURITY] A Different CSOonline Article calling out the BS in the security industry
robert at webappsec.org
- [WEB SECURITY] A Different CSOonline Article calling out the BS in the security industry
Pete Herzog
- [WEB SECURITY] A Different CSOonline Article calling out the BS in the security industry
Andy Steingruebl
- [WEB SECURITY] Disclosure for Web Applications
txs
- [WEB SECURITY] A Different CSOonline Article calling out the BS in the security industry
Dennis Groves
- [WEB SECURITY] Disclosure for Web Applications
Dennis Groves
- [WEB SECURITY] iPhone
Dennis Groves
- [WEB SECURITY] Disclosure for Web Applications
txs
- [WEB SECURITY] WASC Meetup at RSA (San Francisco 2007)
Jeremiah Grossman
- [WEB SECURITY] Disclosure for Web Applications
Bill Newton
- [WEB SECURITY] Disclosure for Web Applications
Dennis Groves
- [WEB SECURITY] A Different CSOonline Article calling out the BS in the security industry
Pete Herzog
- [WEB SECURITY] Anti-DNS Pinning + Socket in FLASH
Kanatoko
- [WEB SECURITY] Disclosure for Web Applications
Pete Herzog
- [WEB SECURITY] Client-side validation in 2007?
Kurt Grutzmacher
- [WEB SECURITY] Client-side validation in 2007?
Jeremiah Grossman
- [WEB SECURITY] Client-side validation in 2007?
Martin O'Neal
- [WEB SECURITY] Client-side validation in 2007?
Dennis Groves
- [WEB SECURITY] Call for Participation - WASC Distributed Open Proxy Honeypot Project
Ryan Barnett
- [WEB SECURITY] Announcement: The Cross-site Request Forgery FAQ
bugtraq at cgisecurity.net
- [WEB SECURITY] Announcement: The Cross-site Request Forgery FAQ
Stefan Esser
- [WEB SECURITY] Announcement: The Cross-site Request Forgery FAQ
James Landis
- [WEB SECURITY] Announcement: The Cross-site Request Forgery FAQ
bugtraq at cgisecurity.net
- [WEB SECURITY] Announcement: The Cross-site Request Forgery FAQ
bugtraq at cgisecurity.net
- [WEB SECURITY] Announcement: The Cross-site Request Forgery FAQ
Stefan Esser
- [WEB SECURITY] Announcement: The Cross-site Request Forgery FAQ
Billy Hoffman
- [WEB SECURITY] Announcement: The Cross-site Request Forgery FAQ
bugtraq at cgisecurity.net
- [WEB SECURITY] Announcement: The Cross-site Request Forgery FAQ
John Terrill
- [WEB SECURITY] Ajax Sniffer - Proof of concept
Anurag Agarwal
- [WEB SECURITY] VisaNet Consolidated PIN Security Standards Requirements manual
Mustafa KOMUT
- [WEB SECURITY] Persistent Web Backdoor
pdp (architect)
- [WEB SECURITY] *RESULTS* Web Application Security Professionals Survey (Jan. 2007)
Jeremiah Grossman
- [WEB SECURITY] *RESULTS* Web Application Security Professionals Survey (Jan. 2007)
Jeremiah Grossman
- [WEB SECURITY] some answered questions
Jeremiah Grossman
- [WEB SECURITY] some answered questions
Schmidt, Albert E
- [WEB SECURITY] Crawling Ajax-driven Web 2.0 Applications
bugtraq at cgisecurity.net
- [WEB SECURITY] Atom Database
pdp (architect)
- [WEB SECURITY] Hardware for logging network requests
J Joensuu
- [WEB SECURITY] some answered questions
Chris Weber
- [WEB SECURITY] RE: [SPAM] [WEB SECURITY] Hardware for logging network requests
Steve Figures
- [WEB SECURITY] What happens to Your Computer if you Mispell Google.com
pdp (architect)
- [WEB SECURITY] Hardware for logging network requests
Mike Fratto
- [WEB SECURITY] WASC-Articles: Seeking Guest Writers
robert at webappsec.org
- [WEB SECURITY] xss filter to protect from xss attacks
Anurag Agarwal
- [WEB SECURITY] Re: [Webappsec] xss filter to protect from xss attacks
Amit Klein
- [WEB SECURITY] Re: [Webappsec] xss filter to protect from xss attacks
anurag.agarwal at yahoo.com
- [WEB SECURITY] Re: [Webappsec] xss filter to protect from xss attacks
anurag.agarwal at yahoo.com
- [WEB SECURITY] Re: [Webappsec] xss filter to protect from xss attacks
Stephen de Vries
- [WEB SECURITY] xss filter to protect from xss attacks
Prasad Shenoy
- [WEB SECURITY] Re: [Webappsec] xss filter to protect from xss attacks
Ryan Barnett
- [WEB SECURITY] xss filter to protect from xss attacks
Dinis Cruz
- [WEB SECURITY] Re: [Webappsec] xss filter to protect from xss attacks
celf
- [WEB SECURITY] xss filter to protect from xss attacks
Andrew van der Stock
- [WEB SECURITY] xss filter to protect from xss attacks
pdp (architect)
- [WEB SECURITY] Re: [Webappsec] xss filter to protect from xss attacks
Anurag Agarwal
- [WEB SECURITY] Re: [Webappsec] xss filter to protect from xss attacks
Prasad Shenoy
- [WEB SECURITY] xss filter to protect from xss attacks
anurag.agarwal at yahoo.com
- [WEB SECURITY] Re: [Webappsec] [WEB SECURITY] xss filter to protect from xss attacks
celf
- [WEB SECURITY] Re: [Webappsec] [WEB SECURITY] xss filter to protect from xss attacks
anurag.agarwal at yahoo.com
- [WEB SECURITY] How extract URL-link from flash(.swf) file by PHP?
김영일
- [WEB SECURITY] How extract URL-link from flash(.swf) file by PHP?
Steve Orrin
- [WEB SECURITY] Re: How extract URL-link from flash(.swf) file by PHP?
homegrown at bryanallott.net
- [WEB SECURITY] img src , cant get it!
John Terrill
- [WEB SECURITY] WEB2.0 Security Isuues
Avi Shvartz
- [WEB SECURITY] Re: How extract URL-link from flash(.swf) file by PHP?
Korhan GURLER
- [WEB SECURITY] img src , cant get it!
Benjamin Flesch
- [WEB SECURITY] xss filter to protect from xss attacks
Lalit Patel
- [WEB SECURITY] img src , cant get it!
steve jensen
- [WEB SECURITY] Suggestions for the CSRF FAQ
Brian Eaton
- [WEB SECURITY] Re: Suggestions for the CSRF FAQ
bugtraq at cgisecurity.net
- [WEB SECURITY] Suggestions for the CSRF FAQ
Stefan Esser
- [WEB SECURITY] Suggestions for the CSRF FAQ
Brian Eaton
- [WEB SECURITY] Defeating CAPTCHAs via Averaging (fwd)
bugtraq at cgisecurity.net
- [WEB SECURITY] Suggestions for the CSRF FAQ
Stefan Esser
- [WEB SECURITY] Suggestions for the CSRF FAQ
John Terrill
- [WEB SECURITY] Re: Suggestions for the CSRF FAQ
Brian Eaton
- [WEB SECURITY] Re: Suggestions for the CSRF FAQ
bugtraq at cgisecurity.net
- [WEB SECURITY] OWASP Top 10 2007 Release Candidate 1
Andrew van der Stock
- [WEB SECURITY] HTTP validation framework for Java
Stephen de Vries
- [WEB SECURITY] Good Magazines and Books
KT
- [WEB SECURITY] *REMINDER* WASC Meetup at RSA (San Francisco 2007)
Jeremiah Grossman
- [WEB SECURITY] How Prevalent Are XSS Vulnerabilities?
Michael Sutton
- [WEB SECURITY] Targeted password cracking by exploiting the registration functionality of a web application
Anurag Agarwal
- [WEB SECURITY] Technika - Attack Scripting Environment
pdp (architect)
- [WEB SECURITY] stompy 0.04
Michal Zalewski
- [WEB SECURITY] Vista Bug: IE7 sploit...
Joel R. Helgeson
- [WEB SECURITY] Vista Bug: IE7 sploit...
. Solo
Last message date:
Wed Jan 31 23:10:46 EST 2007
Archived on: Fri Jan 28 13:58:42 EST 2011
This archive was generated by
Pipermail 0.09 (Mailman edition).