Web Application Security & Learn to find & fix SQL injection, Cross site & web security issues

Sunday, September 10, 2006

Conclusion

Conclusion

Attacking web applications is the easiest way to compromise hosts, networks and users. Generally nobody notices web application penetration, until serious damage has been done. Web application vulnerability can be eliminated to a great extent ensuring proper design specifications and coding practices as well as implementing common security procedures. Various tools help the attacker to view the source codes and scan for security holes. The first rule in web application development from a security standpoint is not to rely on the client side data for critical processes. Using an encrypted session such as SSL or "secure" cookies are advocated instead of using hidden fields, which are easily manipulated by attackers. A cross-site scripting vulnerability is caused by the failure of a web based application to validate user supplied input before returning it to the client system. If the application accepts only expected input, then the XSS can be significantly reduced.

2 Comments:

Anonymous Anonymous said...

Howdy! This is kind of off topic but I need some advice from
an established blog. Is it hard to set up your own blog?
I'm not very techincal but I can figure things out pretty fast. I'm thinking about setting
up my own but I'm not sure where to begin. Do you have any tips or suggestions? Thank you

Feel free to surf to my homepage ... garcinia

5:33 AM

 
Anonymous Anonymous said...

How To Detox And Cleanse Your Body Fasting means change in eating habits for approximately a week ahead of time.



my page - best whole body cleanse

5:59 PM

 

Post a Comment

Subscribe to Post Comments [Atom]

<< Home