ZDNet Resources
- Major flaw in State of Pennsylvania online voter registration puts user data at risk
- Update: Microsoft is NOT at fault for this! There seems to be some confusion within the talkbacks on this subject about this being Microsoft's fault, and also some strange claims that development shops who do only .NET programming are more likely to program insecurely. This is just, in fact,...
- Tags: Google Inc., Pennsylvania, Detail, Application Security, Flaw, Voter Registration, Security, Nathan McFeters
- Blog posts 2008-03-18
- application security: The Missing Pillar of Software Quality
- Web applications must be built with improved security features to fulfill their economic promise and protect organizations against liability and loss. This White Paper details the new HP QAInspect, a program that delivers automated security information that QA professionals and software testers can access at any point in the application...
- Tags: Software, Hewlett-Packard Co., Application Security, Security
- White papers 2007-12-01
- Web application security and PCI DSS compliance: is your data secure?
- In addition to being a good business practice, Web security is now mandated across all industries in the United States through the Payment Card Industry (PCI) Data Security Standard (DSS). While IT departments cannot control or drive all PCI DSS compliance initiatives, they can help meet compliance by deploying...
- Tags: Hewlett-Packard Co., Compliance, Web Application, Application Security, PCI, Security, Storage, Hardware
- White papers 2007-10-01
- HP Customer Perspectives: How QA Can Prevent Hackers
- The presenter of this webcast discusses about how QA professionals can play a more critical role in the application security process. In this webcast, the attendee will learn understanding the application security lifecycle, how QA can prevent hackers from exploiting application defects, what to look for in an application security...
- Tags: Hewlett-Packard Co., QA, Hacker, Application Security, Security
- Webcasts 2007-09-11
- Gmail vulnerability disclosed at Defcon
- Gmail vulnerability disclosed at DefconGoogle Security2 weeks ago, Google had a series of security issues reported in Singapore, it was well documented here:http://jvyloh.blogspot.com/2007/07/google-serious-security-breach-final.htmlHow can I set SSL "always on" in Gmail?Can you tell me how I can use the SSL version of Gmail?And does this apply to both the browser...
- Tags: Firewalls, SSL/TLS, E-mail providers, Authentication/Encryption, Network security, SECURITY, application security, SSL, Google Gmail, application firewall, Google Inc., firewall
- Discussion threads 2007-08-05
- application security: Why Network Firewalls and Intrusion Prevention Systems Aren't Enough
- Network firewalls and intrusion prevention systems (IPSs) are integral parts of an enterprise security strategy, but they can't adequately protect the inherently vulnerable web application that companies now rely on to extend their businesses to partner, suppliers and customers. Download this paper to learn how Citrix Application Firewall complements...
- Tags: Intrusion Prevention System, Network, Citrix Systems Inc., Application Security, Firewalls, Intrusion Prevention, Network Security, Security, Networking
- White papers 2007-05-11
- Managing Entitlements: The Next Phase of application security
- The requirements for providing security access to enterprise applications have evolved dramatically in the past decade. The advent of the Web led to the need to protect the perimeter of the enterprise with technology principally focused on "Keeping the bad guys out." The introduction of Web security and single sign-on...
- Tags: BEA Systems Inc., Identity Federation, Single Sign-on, Application Security, Enterprise Application, Authentication/Encryption, Security
- White papers 2007-04-27
- Towards Security by Construction for Web 2.0 Applications
- While security experts routinely bemoan the current state of the art in software security, from the standpoint of the application developer, application security requirements present yet another hurdle to overcome. Given the pressure for extra functionality, "Lesser" concerns such as performance and security often do not get the time they...
- Tags: Web, Application Security, Web 2.0, Security, Internet
- White papers 2007-04-25
- 360 ° Network Access Control With TippingPoint NAC
- Protecting enterprise networks from attacks has been improved immeasurably over the past several years. Yet, for all of the deployment of perimeter security firewalls, application security gateways, ID management systems, desktop protection software, and other network security devices, major network breaches leading to loss of personal privacy information, intellectual property...
- Tags: Network, Perimeter Security, Application Security, TippingPoint Technologies, Attack, Networking, Security
- White papers 2007-04-01
- Web Wall (2)
- Feebe WebWall, a Web Application Firewall, is a new class of software that protects applications from hackers and other malicious attacks. It enforces granular security policies to protect Web applications as well as confidential information from both random and targeted application security attacks. Feebe WebWall is based on a positive...
- Tags: Web, Application Security, Attack, Feebe WebWall, Security
- Software downloads 2006-06-20
- Realtime application security (zip)
- Realtime Application Security is the perfect solution for any administrator who needs to tighten down their Windows terminal server, multi-user server, or multi-user workstation. Features: Windows terminal server application metering, multi-user server application metering, multi-user workstation application metering, automatic grouping of common applications, searchable activity logs, and denied user access...
- Tags: User Access, Application Security, Realtime Application Security, Terminal Services, Workstations, Servers, Hardware
- Software downloads 2006-05-08
- Oracle Application Server 10g Security
- Application Security includes thinking through and standardizing on authentication, authorization, integrity, confidentiality, and access control mechanisms across the enterprise. The application server that powers and secures these applications has critical legal and business implications for companies, their corporate brands and their relationships with customers, employees and partners. This paper discusses...
- Tags: Oracle Application Server, Oracle Corp., Access Control, Oracle Application Server 10g, Application Security, Application Servers, Middleware, Security, Enterprise Software, Software
- White papers 2006-04-01
- LASsie (Light application security) for MS Access (zip)
- LASsie (Light Application Security) is a library of Microsoft Access objects that you can reference from, or add into your MS Access application to implement basic form/report/control/record level security. With LASsie, you can prevent a user from opening specific forms or reports, restrict a user's ability to update data on...
- Tags: Microsoft Access, Microsoft Corp., Application Security, Microsoft Office, Databases, Security, Office Suites, Software, Enterprise Software, Data Management
- Software downloads 2006-02-22
- application security by Design
- Secure software is principally a software development problem. Its solution is the responsibility of every member of the software development team, from managers and support staff to developers, testers and IT staff. Every stage in the software lifecycle must include the appropriate security analysis, defenses and countermeasures that will result...
- Tags: Software, Security, Application Security, Software Development, Tools & Techniques, Development Tools, Software/Web Development, Management
- White papers 2006-02-01
- Hunting Trojan Horses
- This paper presents HTH (Hunting Trojan Horses), a security framework for detecting Trojan Horses and Backdoors. The framework is composed of two main parts: Harrier - an application security monitor that performs run-time monitoring to dynamically collect execution-related data, and Secpert - a security-specific Expert System based on CLIPS, which...
- Tags: Northeastern University, Trojan Horse, Framework, Application Security, Spyware, Spyware, Adware & Malware, Security, Viruses And Worms
- White papers 2006-01-01
- Best Practices in Creating High Level application security
- Software piracy continues to be a growing epidemic. According to the Second Annual Business Software Alliance (BSA) and IDC Global Software Piracy Study, thirty-five percent of the software installed on personal computers worldwide was pirated, representing a loss of nearly $33 billion in 2004. This white paper examines prevalent hacking...
- Tags: Software, Best Practice, SafeNet Inc., Application Security, Software Piracy, Hacking, Tools & Techniques, Security, Management
- White papers 2005-10-14
- BEA AquaLogic Enterprise Security: Managing Entitlements--The Next Phase of application security
- The requirements for application security have evolved, with access control being pushed back from the Web tier into the application tier by regulatory and privacy concerns. In-house entitlements systems are often the solution, but they can be difficult to scale and expensive to maintain. BEA AquaLogic Enterprise Security, an off-the-shelf...
- Tags: Enterprise Security, BEA Systems Inc., BEA AquaLogic, Application Security, EJB, Security, Software Development, Software/Web Development
- White papers 2005-09-01
- Protecting Systems With Novell AppArmor Linux application security
- Novell AppArmor, powered by Immunix, is the most effective and easy-to-use Linux - application security system available today. AppArmor protects your operating system and applications from the effects of attacks, viruses and malicious applications. As a result, your business can minimize threats, protect key corporate data, reduce network administration costs...
- Tags: Novell Inc., Security Policy, Novell AppArmor, Application Security, Linux, Security, UNIX, Operating Systems, Open Source, Software
- White papers 2005-07-25
- Tiny Personal Firewall (5)
- Tiny Personal Firewall integrates several protection layers for the ultimate safety of the desktop and server. Traditional Firewall blocks the network traffic based on protocol, ports, and application. Intrusion Detection and Prevention blocks the network traffic based on the content of packets. Malicious packet content is frequently used by hackers...
- Tags: Network Traffic, Application Security, Tiny Software, Tiny Personal Firewall, Firewalls, Network Security, Security, Networking
- Software downloads 2005-05-17
- application security Brings Compliance Best-Practices to Corporate Databases
- Databases are among the most important applications because they contain detailed, sensitive information including financial transactions, customer names, patient files, and social security and credit card numbers. Given the increasing risk of unauthorized access, use, disclosure, modification or destruction, compliance efforts must include securing "the crown jewels" at their sources...
- Tags: Sarbanes-Oxley, Storage, FISMA, Sarbanes-Oxley Act, database, application security, regulatory compliance, Social Security, credit card, security
- White papers 2005-04-05
White Papers and Webcasts