xss
06-30-2008 13:28
Today's the day! PCI DSS section 6.6 is required - The Tech Herald

The Tech Herald
Today's the day! PCI DSS section 6.6 is required
The Tech Herald, IN - Jun 30, 2008
If you use the
OWASP top ten list, the things you need to check for include Cross Site Scripting (XSS), SQL Injection (SQLi), Remote File Inclusion (RFI),
... >>
Kompletan tekst: Google
06-30-2008 13:28
Today's the day! PCI DSS section 6.6 is required - The Tech Herald

The Tech Herald
Today's the day! PCI DSS section 6.6 is required
The Tech Herald, IN - Jun 30, 2008
If you use the
OWASP top ten list, the things you need to check for include Cross Site Scripting (XSS), SQL Injection (SQLi), Remote File Inclusion (RFI),
... >>
Kompletan tekst: Google
06-30-2008 13:28
Today's the day! PCI DSS section 6.6 is required - The Tech Herald

The Tech Herald
Today's the day! PCI DSS section 6.6 is required
The Tech Herald, IN - Jun 30, 2008
If you use the
OWASP top ten list, the things you need to check for include Cross Site Scripting (XSS), SQL Injection (SQLi), Remote File Inclusion (RFI),
... >>
Kompletan tekst: Google
06-30-2008 13:28
Today's the day! PCI DSS section 6.6 is required - The Tech Herald

The Tech Herald
Today's the day! PCI DSS section 6.6 is required
The Tech Herald, IN - Jun 30, 2008
If you use the
OWASP top ten list, the things you need to check for include Cross Site Scripting (XSS), SQL Injection (SQLi), Remote File Inclusion (RFI),
... >>
Kompletan tekst: Google
06-30-2008 13:28
Today's the day! PCI DSS section 6.6 is required - The Tech Herald

The Tech Herald
Today's the day! PCI DSS section 6.6 is required
The Tech Herald, IN - Jun 30, 2008
If you use the
OWASP top ten list, the things you need to check for include Cross Site Scripting (XSS), SQL Injection (SQLi), Remote File Inclusion (RFI),
... >>
Kompletan tekst: Google
07-02-2008 17:37
PCI-DSS references the outdated OWASP Top Ten

I’m sure other people have noticed this, at least I hope so, but never mentioned it publicly. If you read PCI-DSS 1.1 section 6.5, the part that covers “Cover prevention of common coding vulnerabilities in software development processes”, you’ll notice the list is identical to that of the OWASP Top Ten 2004 while the latest version is 2007:
6.5.1 Unvalidated input
6.5.2 Broken access control (for example, malicious use of user IDs)
6.5.3 Broken authentication and session m
>>
Kompletan tekst: Jeremiah Grossman
07-02-2008 21:13
www.ministers.sa.gov.au XSS

sl4xUz has discovered a vulnerability in www.ministers.sa.gov.au, which could be exploited by malicious people to conduct XSS attacks.
>>
Kompletan tekst: XSSed