Website Vulnerabilities

Posted by Ben Griswold on Johnny Coder See other posts from Johnny Coder or by Ben Griswold
Published on Mon, 09 Nov 2009 22:51:00 +0000 Indexed on 2010/03/18 22:11 UTC
Read the original article Hit count: 820

Filed under:

The folks at the Open Web Application Security Project publish a list of the top 10 vulnerabilities. In a recent CodeBrew I provided a quick overview of them all and spent a good amount of time focusing on the most prevalent vulnerability, Cross Site Scripting (XSS).  image

I gave an overview of XSS, stepped through a quick demo (sorry vulnerable site), reviewed the three XSS variations and talked a bit about how to protect one’s site. 

References and reading materials were also included in the presentation and, look at that, they are provided here too.

  1. Open Web Application Security Project
  2. The OWASP Top Ten Vulnerabilities (pdf)
  3. OWASP List of Vulnerabilities
  4. The 56 Geeks Project by Scott Johnson
  5. ha.ckers.org
  6. OWASP XSS Prevention Cheat Sheet
  7. Wikipedia
  8. Is XSS Solvable?, Don Ankney
  9. The Anatomy of Cross Site Scripting, Gavin Zuchlinski

© Johnny Coder or respective owner

Related posts about Presentations

  • How to create animated presentations/video-presentations?

    as seen on Super User - Search for 'Super User'
    Making presentation using PowerPoint is kind of too simple, it's possible to make nice presentations but I would like do a step forward. I'm wondering how people make animations like this one: http://www.facebook.com/video/video.php?v=10150210521510484 ? >>> More

  • Change Data Capture Webinar

    as seen on SQLIS - Search for 'SQLIS'
    I am going to be doing a webinar with our friends at Attunity on Change Data Capture.  Attunity have a good story around this technology and you can use it in your SSIS loads to great effect. Join Attunity and Konesans/SQLIS for a Webinar on 17 September Space is limited. Reserve your… >>> More

  • Manchester UG Presentation Video

    as seen on SQLIS - Search for 'SQLIS'
    In July I was invited to speak at the UK SQL Server UG event in Manchester.  I spoke about Excel being a good data mining client.  I was a little rushed at the end as Chris Testa-ONeill told me I had only 5 minutes to go when I had only been talking for 10 minutes.  Apparently I have… >>> More

  • Change Data Capture Webinar

    as seen on SQLIS - Search for 'SQLIS'
    I am going to be doing a webinar with our friends at Attunity on Change Data Capture.  Attunity have a good story around this technology and you can use it in your SSIS loads to great effect. Join Attunity and Konesans/SQLIS for a Webinar on 17 September Space is limited. Reserve your… >>> More

  • Learn Lean Software Development and Kanban Systems

    as seen on Johnny Coder - Search for 'Johnny Coder'
    I did an in-house presentation on Lean Software Development (LSD) and Kanban Systems this week.  Beyond what I had previously learned from various podcasts, I knew little about either topic prior to compiling my slide deck.  In the process of building my presentation, I learned a ton.  I found the… >>> More