News (22)

Security tool aims to stop drive-by installs

Veterans of antispyware specialist PestPatrol have developed a new tool that throws up roadblocks for so-called drive-by installs of malicious code onto vulnerable PCs. Read more »

Google plans 'Chrome' browser

Search giant Google has confirmed it will shortly unveil a new Web browser dubbed 'Chrome' and based on code from the Webkit project. Read more »

China's Firefox growth kicks Aussies off top user list

Australia has missed out making it into a list of countries containing the most Firefox users, with the number of Chinese users of the browser taking over Australian ones between November and December. Read more »

Microsoft probes report of IE flaw

A new flaw in Internet Explorer could be exploited to launch spoof-based attacks, or access and change data on vulnerable PCs, security experts have warned. Read more »

Firebird database readies SMP release

The open source project, which was created when Borland open sourced Interbase in 2000, is due to release a version of its database with full SMP support allowing enterprises greater scalability. Read more »

Browser flaws biggest software security risk

Cross-site scripting flaws are now the most common vulnerabilities according to security experts. Read more »

Chills at Microsoft's security huddle

Microsoft likes to keep its friends close -- and now that security companies are its foes, it may well want to keep those even closer. Read more »

Google Chrome to get extensions

Google has published its plan to build into Chrome what is arguably its most requested feature: the ability to accept extensions that can customise how the open source Web browser operates. Read more »

Safari 3.2 includes antiphishing tools

Without fanfare, Apple has apparently added antiphishing to its Safari 3.2 release. Read more »

Government targets itself with phishing attack

Governments have had to target themselves with phishing attacks in order to highlight weak points in their security and protect national secrets from espionage, according to a report published this week by Sans. Read more »

Features (55)

Bulletproof persistent cookies to increase security

Web browser cookies can enhance the user experience by providing additional functionality and ease of use. However, from an administration point of view, cookies are a security concern. Encrypt your cookies with this simple technique. Read more »

Designing secure intranet applications

During the design phase, engineering and security teams must work together to ensure intranet applications meet the established security standards. Read more »

Web application security frameworks (WASF), Part 1: Introduction

Often you will want parts of your Web application to be exclusive to certain users. This access distinction requires the use of Web application security frameworks. This first article in the series introduces you to the three most often used methods. Read more »

CGI wrappers for Apache-based apps can boost security

CGI scripts represent a big potential security risk in Web development, but using CGI wrappers can help insulate your servers from attack. Here's an outline of how to create CGI wrappers to protect an Apache Web server. Read more »

Develop secure software at the application level

Protect your application from input overflow and underflow attacks, and from other common tactics with these development techniques. Read more »

Master simple forms authentication in .NET

Using forms authentication, you can quickly build a simple, secure Web app. This walk-through shows you how to apply the strategy in your apps. Read more »

Develop a VoiceXML solution using BeVocal

VoiceXML (VXML) is a markup language like HTML. The difference is that a phone browser rather than a Web browser renders VXML. Get started with this article. Read more »

Creating powerful dynamic self-relationships in FileMaker

Filemaker can create flexible relationships which grow dynamically with the information fed in. Read more »

Web services B2B implementation demonstration: Part 4

In the fourth article of our series on Web services B2B implementation, we implement business logic and Web services associated with John's business tier. Read more »

Security in the Web 2.0 Era

At the Gartner Symposium ITxpo 2008 in Sydney this week, Andrew Walls, the research director and security analyst at Gartner presented "Security in the Age of E-Commerce and Web 2.0". Read more »

Blog (3)

The 2008 Trends and Threats to Internet security

Lana Kovacevic [blogs:webanatomy] -- I recently came across the IBM Internet Security Systems X-Force 2008 Mid-Year Trend Statistics report, which outlines issues affecting internet security, including application vulnerabilities, phishing, malware and spam. Read more »

Google Gears screenshots

Brendon Chase [blogs:codemonkeybusiness] -- Here is a bit of eye candy of the new Google Gears installation and sample code. Read more »

Salesforce's new AIR toolkit

Staff [blogs:syslog] -- Following the announcement that Salesforce will provide a free toolkit for Adobe Flex and AIR development on its Force.com platform, I spoke to the company’s Doug Farber, the Vice President of Operations, Asia Pacific about its functionality and other issues surrounding the toolkit. Read more »

Log in


Sign up | Forgot your password?

What's on?