Showing posts with label webapp. Show all posts
Showing posts with label webapp. Show all posts

Tuesday, November 17, 2009

Top 10 Risks to Web Applications

OWASP has published a release-candidate report of the top 10 risks they foresee to web applications in 2010.

Summary:



  1. Injection

  2. Cross Site Scripting (XSS)

  3. Broken Authentication and Session Management

  4. Insecure Direct Object References

  5. Cross Site Request Forgery (CSRF)

  6. Security Misconfiguration

  7. Failure to Restrict URL Access

  8. Unvalidated Redirects and Forwards

  9. Insecure Cryptographic Storage

  10. Insufficient Transport Layer Protection

Thursday, February 12, 2009

Free dia-like webapp

[caption id="attachment_205" align="alignnone" width="300" caption="online flowcharting"]online flowcharting[/caption]

Lifehacker brings us lovelycharts for all our "free, I don't have time to download and install dia" needs.