WebApp Sec: by date

290 messages starting Apr 05 05 and ending Jun 30 05
Date index | Thread index | Author index


Tuesday, 05 April

Re: Any security issue with using SPNEGOto perform single-sign-on? Saqib Ali
Smartcard-Logon and NTLM-Backward Compatability Jan P. Monsch
A new tool wschess released Hemil
keyloggers? SB
Final Notice: OWASP AppSec Europe 2005, April 9-10 Dave Wichers
SV: Java -> .NET RSA Encryption Fredrik Hesse
Web Application Security Consortium Project Announcements contact

Wednesday, 06 April

Re: keyloggers? Louis Baumann
Re: keyloggers? Greg Stiavetti
Re: Smartcard-Logon and NTLM-Backward Compatability Saqib Ali
RE: keyloggers? Griffiths, Ian
Re: keyloggers? Yoanne LE MERCIER
ASP & SQL on IIS environment Scott Hamm
Re: keyloggers? Sachin Shetty
Re: keyloggers? Gareth Davies
Re: keyloggers? Michael Silk
Re: keyloggers? Adam Shostack
Re: keyloggers? colinm () clientsecure net
Re: keyloggers? Zero Burnout
RE: keyloggers? P.B. Wagenaar
Re: keyloggers? - dont doit Alvin Oga
RE: keyloggers? And form sniffers? Richard M. Smith
Re: keyloggers? Michael Silk
Re: keyloggers? Federico CastaƱeda
Re: keyloggers? - dont doit Kyle Maxwell
Re: keyloggers? - dont doit Antoine Martin
RE: Phishing scam using Microsoft name Michael Howard
RE: ASP & SQL on IIS environment Michael Howard
Re: keyloggers? Augusto Paes de Barros
RE: keyloggers? Lyal Collins
Re: keyloggers? Antonio Fontes
Re: keyloggers? - dont doit lyal.collins
Re: keyloggers? Michael Silk
RE: keyloggers? Mehmet Buyukozer
Re: keyloggers? - dont doit James . Barkley

Wednesday, 13 April

ColdFusion - CFID & CFTOKEN Jason binger
User ID generation Jason binger
First OWASP Belgium Chapter Meeting Sebastien Deleersnyder
http://www.domainname.com./ (with the ending) Scovetta, Michael V
RE: User ID generation Andrew van der Stock
RE: ColdFusion - CFID & CFTOKEN Andrew van der Stock
webapp dependencies Jarmon, Don R
RE: http://www.domainname.com./ (with the ending) Wall, Kevin
Re: http://www.domainname.com./ (with the ending) exon
Re: http://www.domainname.com./ (with the ending) Robert Hajime Lanning
Re: http://www.domainname.com./ (with the ending) Mark Burnett
RE: User ID generation Thomas Ng
Re: webapp dependencies Scovetta Labs
Re: User ID generation Scovetta Labs

Thursday, 14 April

Re: webapp dependencies victor calzado
Re: ColdFusion - CFID & CFTOKEN Rogan Dawes
RE: webapp dependencies Ory Segal
Re: User ID generation Andi McLean

Monday, 18 April

Re: ColdFusion - CFID & CFTOKEN Amit Klein (AKsecurity)
Re: User ID generation Paul M.
Re: webapp dependencies moty yacov
RE: User ID generation Murtland, Jerry
Re: User ID generation Andi McLean
Re: User ID generation Adam K
Re: User ID generation Scovetta Labs
suggesting passwds to users James Barkley
Re: Dropping connection instead of returning 400 Kanatoko
modulo question martin

Wednesday, 20 April

Re: modulo question Michael Vergoz
Re: suggesting passwds to users Saqib Ali
RE: suggesting passwds to users Matt Fisher
Recon 2005 - Speakers list dataworm
RE: webapp dependencies Matt Fisher
Re: suggesting passwds to users Mark Owen
RE: webapp dependencies Amit Klein (AKsecurity)
Re: suggesting passwds to users Saqib Ali
Re: suggesting passwds to users James Barkley
RE: Dropping connection instead of returning 400 Matt Fisher
Windows Services Alvin
Re: modulo question Skip Carter
Re: modulo question Scovetta Labs
Re: modulo question Federico CastaƱeda
RE: webapp dependencies Ory Segal
RE: webapp dependencies Matt Fisher
RE: webapp dependencies Ryan C. Barnett
Re: suggesting passwds to users Kelly John Rose
Re: modulo question Kelly John Rose
random character checking at logon jimtames
Re: phpBB Ban Ole Martin Eide
Re: suggesting passwds to users Robert Hajime Lanning
Re: suggesting passwds to users Michael Silk
Re: suggesting passwds to users Martin Sarsale
Re: User ID generation Lucas Holt
GMail blocking "executable" attachments Scovetta, Michael V

Thursday, 21 April

Re: suggesting passwds to users hggdh
Re: suggesting passwds to users robert
RE: suggesting passwds to users Scovetta, Michael V
Re: modulo question warnings
RE: suggesting passwds to users maburns
RE: suggesting passwds to users Sohl, Greg
RE: GMail blocking "executable" attachments Richard M. Smith
Re: random character checking at logon Tim
SV: suggesting passwds to users Fredrik Hesse
RE: GMail blocking "executable" attachments Scovetta, Michael V
Re: GMail blocking "executable" attachments Michael Silk
MSDN Webcast: Know Your Options for Data Validation (Level 300) David Raphael
Re: Windows Services Andrew Burke
Re: GMail blocking "executable" attachments Wilfried Schobeiri
RE: webapp dependencies Scovetta, Michael V
Re: random character checking at logon Amit Klein (AKsecurity)
RE: webapp dependencies Amit Klein (AKsecurity)
RE: suggesting passwds to users Westman, Brad
RE: Dropping connection instead of returning 400 christopher
Re: GMail blocking "executable" attachments James Riden
Re: phpBB Ban Joseph Miller
Re: phpBB Ban Mark Susol Ultimate Creative Media
Re: suggesting passwds to users SecurityFocus
Re: webapp dependencies Bill Pennington

Saturday, 07 May

Paros 3.2.1 release contact
RE: Preventing direct URL access in a J2EE environment Roberto GABERGI

Wednesday, 11 May

Announcement: The Web Security Mailing List contact
OWASP 2005 UK Conference Slides Now Available Dave Wichers
The Original Web Security Mailing List Arian J. Evans
Detecting SoftICE ? Bruce Klein
Re: ColdFusion - CFID & CFTOKEN ron thigpen
Re: ColdFusion - CFID & CFTOKEN ron thigpen

Sunday, 15 May

Re: Detecting SoftICE ? mozilla
Re: ColdFusion - CFID & CFTOKEN leighm
Re: Detecting SoftICE ? Florian Maier
New Free Tool - Foundstone .NET Mon Curphey, Mark
New Free Tool - Foundstone CookieDigger Curphey, Mark
Re: The Original Web Security Mailing List Jeremiah Grossman
Fwd: Re: The Original Web Security Mailing List auto231439
Re: The Original Web Security Mailing List Matthieu Estrade
Managing Code Signing Digital IDs for Open Source? Saqib Ali

Wednesday, 08 June

Care to become a moderator? Alfred Huger

Tuesday, 14 June

New Moderator Alfred Huger
Book Review: "Apache Security" By O'Reilly zeno
RE: New Moderator Thomas Brennan
OWASP 2.0 beta 1 available for public comment Andrew van der Stock
Welcome from your new moderator :) Andrew van der Stock
Cookie stealing and replay in a corporate single sign on environment Willard Fernortner

Wednesday, 15 June

RE: Cookie stealing and replay in a corporate single sign on environment Cyrill Osterwalder
Re: Cookie stealing and replay in a corporate single sign on environment Irene Abezgauz
Re: Cookie stealing and replay in a corporate single sign on environment Ivan Ristic
Designing a Code Signining System Saqib Ali
Re: Cookie stealing and replay in a corporate single sign on environment Willie Northway
RE: Cookie stealing and replay in a corporate single sign on environment Cyrill Osterwalder
Re: Cookie stealing and replay in a corporate single sign on environment Saqib Ali
Re: Cookie stealing and replay in a corporate single sign on environment Willard Fernortner
Re: Cookie stealing and replay in a corporate single sign on environment Irene Abezgauz
SOAP Debugger - a simple, generic SOAP client Chuck

Thursday, 16 June

ANNOUNCING: 2nd US OWASP AppSec Conference - Oct 11-12 - Near DC Dave Wichers
Black Hat Briefings Announcements Jeff Moss
Re: SOAP Debugger - a simple, generic SOAP client Zhiguly Hotel
Re: SOAP Debugger - a simple, generic SOAP client asmolen
Re: SOAP Debugger - a simple, generic SOAP client Sverre H. Huseby

Friday, 17 June

RE: SOAP Debugger - a simple, generic SOAP client Smith, Carl
RE: SOAP Debugger - a simple, generic SOAP client Bob Auger
RE: SOAP Debugger - a simple, generic SOAP client Ory Segal
List administrivia - untrimmed replies Andrew van der Stock
Re: SOAP Debugger - a simple, generic SOAP client Chuck

Saturday, 18 June

Fwd: SOAP Debugger - a simple, generic SOAP client Rush Molekilla
one-time password (OTP) authentication james

Sunday, 19 June

RE: one-time password (OTP) authentication Lyal Collins
Re: one-time password (OTP) authentication Andrew van der Stock

Monday, 20 June

RE: one-time password (OTP) authentication Cyrill Osterwalder
Re: Designing a Code Signining System mike
Re: one-time password (OTP) authentication Joseph Miller
Should login pages be protected by SSL? Amir Herzberg
New release of WebScarab Rogan Dawes
RE: one-time password (OTP) authentication maburns
Re: Should login pages be protected by SSL? Andrew van der Stock
RE: Should login pages be protected by SSL? maburns
RE: Should login pages be protected by SSL? maburns
Fwd: [OWASP-Australia] UPDATED - Meeting Announcement - 21 June 05 Andrew van der Stock
RE: one-time password (OTP) authentication maburns
Re: Should login pages be protected by SSL? Michael Silk
Re: Should login pages be protected by SSL? Andy bentley

Tuesday, 21 June

Re: Should login pages be protected by SSL? Steve Shah
Re: Should login pages be protected by SSL? bluewizard83-de4gahsh
Re: Should login pages be protected by SSL? Amir Herzberg
Re: Should login pages be protected by SSL? Kalyan Varma
RE: Should login pages be protected by SSL? Glenn Euloth
Re: Should login pages be protected by SSL? Stefano Di Paola
Re: one-time password (OTP) authentication Devdas Bhagat
Re: Should login pages be protected by SSL? Amir Herzberg
Re: Should login pages be protected by SSL? Peter Watkins
Re: Should login pages be protected by SSL? Amir Herzberg
Re: Should login pages be protected by SSL? Amir Herzberg
RE: one-time password (OTP) authentication Lyal Collins
Administrivia: SSL discussion Andrew van der Stock
WASC-Articles: 'Common Security Problems in the Code of Dynamic Web Applications' By Sverre H. Huseby contact
Re: Should login pages be protected by SSL? Andrew van der Stock
Re: Designing a Code Signining System Saqib Ali
Re: Should login pages be protected by SSL? (and comment to moderator) Amir Herzberg
Re: Should login pages be protected by SSL? Saqib Ali
Re: one-time password (OTP) authentication Achim Hoffmann
Re: Should login pages be protected by SSL? (and comment to moderator) Andrew van der Stock
Re: Should login pages be protected by SSL? Steve Shah
Re: Should login pages be protected by SSL? Saqib Ali
Re: Should login pages be protected by SSL? Amir Herzberg
Re: Should login pages be protected by SSL? Torsten Mueller
Re: Should login pages be protected by SSL? Ian Rogers
Re: Should login pages be protected by SSL? Achim Hoffmann
RE: Should login pages be protected by SSL? Almerindo Graziano
RE: Should login pages be protected by SSL? Cowles, Robert D.
Webapp-level protection/detection of Pharming attacks WebAppSecurity [Technicalinfo.net]
Can HTTP Request Smuggling be blocked by Web Application Firewalls? Amit Klein (AKsecurity)
Re: [WEB SECURITY] Can HTTP Request Smuggling be blocked by Web Application Firewalls? Daniel
Re: PCI standards & Should login pages be protected by SSL? Peter Watkins
RE: Should login pages be protected by SSL? Derick Anderson
RE: Should login pages be protected by SSL? Cowles, Robert D.
Re: Should login pages be protected by SSL? Steve Shah
Re: Should login pages be protected by SSL? (and comment to moderator) Amir Herzberg
Re: Should login pages be protected by SSL? Amir Herzberg
Re: Should login pages be protected by SSL? Amir Herzberg
Re: Can HTTP Request Smuggling be blocked by Web Application Firewalls? Andrew van der Stock
Re: [WEB SECURITY] Can HTTP Request Smuggling be blocked by Web Application Firewalls? Amit Klein (AKsecurity)

Wednesday, 22 June

Re: Can HTTP Request Smuggling be blocked by Web Application Firewalls? Amit Klein (AKsecurity)
RE: PCI standards & Should login pages be protected by SSL? Lyal Collins
[summary] Re: Should login pages be protected by SSL? Steve Shah
RE: Should login pages be protected by SSL? Glenn Euloth
Re: Should login pages be protected by SSL? Dave Ockwell-Jenner
OWASP Ireland Meeting Eoin Keary
Re: Should login pages be protected by SSL? Bob Radvanovsky

Thursday, 23 June

RE: Should login pages be protected by SSL? Levenglick, Jeff
Re: Should login pages be protected by SSL? James Barkley
Re: Should login pages be protected by SSL? Saqib Ali
Tomcat Cross Site Scripting lock down ddodge
Re: Should login pages be protected by SSL? Achim Hoffmann
Re: [summary] Re: Should login pages be protected by SSL? Ole Kasper Olsen
RE: Should login pages be protected by SSL? Flanagan, Kevin
Rephrased: Should login pages be protected by SSL - although it won'thelp most users? Amir Herzberg
Attack Patterns and Security Patterns Mark Curphey
C / C++ Standards Online in T&C Wiki Mark Curphey
TFTP and XP_CMDSHELL - Weird Andres Molinetti
Top Ten Principles for Building Secure Software Mark Curphey
RE: Java keystore password storage Scott, Richard
Re: [summary] Re: Should login pages be protected by SSL? Devdas Bhagat
Top Ten Information Security Considerations for Use Case Modeling Gunnar Peterson
Re: [summary] Re: Should login pages be protected by SSL? Michael Silk

Friday, 24 June

Re: Should login pages be protected by SSL? Eoin Keary
Administrivia: Follow up to survey responses Andrew van der Stock
Re: [summary] Re: Should login pages be protected by SSL? Wolfgang Reder
RE: Should login pages be protected by SSL? Hellman, Matthew
Re: [summary] Re: Should login pages be protected by SSL? Michael Silk
RE: Should login pages be protected by SSL? Hellman, Matthew
Languages/platforms used for Web apps. Any stats? Benjamin Livshits
RE: Languages/platforms used for Web apps. Any stats? Matt Szubrycht
Re: Languages/platforms used for Web apps. Any stats? Andrew van der Stock
Re: Languages/platforms used for Web apps. Any stats? focus

Saturday, 25 June

Re: Languages/platforms used for Web apps. Any stats? Rob Lanphier
Re: Languages/platforms used for Web apps. Any stats? prep
RE: Languages/platforms used for Web apps. Any stats? Mark Curphey
Re: Languages/platforms used for Web apps. Any stats? Mark Susol Ultimate Creative Media
RE: Languages/platforms used for Web apps. Any stats? Steve Slater
Re: Languages/platforms used for Web apps. Any stats? Adam Shostack
Re: Languages/platforms used for Web apps. Any stats? Ben Sytko
Re: Languages/platforms used for Web apps. Any stats? Gary Warner
RE: Languages/platforms used for Web apps. Any stats? Mark Curphey
RE: Should login pages be protected by SSL? Simon Zuckerbraun

Sunday, 26 June

Re: Languages/platforms used for Web apps. Any stats? Steve McCullough
Re: Languages/platforms used for Web apps. Any stats? Steve McCullough
RE: Should login pages be protected by SSL? Michael Tsentsarevsky
Re: Languages/platforms used for Web apps. Any stats? Jesse G. Lands
Re: Should login pages be protected by SSL? Yanglei
RE: Should login pages be protected by SSL? dave kleiman
Re: Languages/platforms used for Web apps. Any stats? Mamading Ceesay
Re: Should login pages be protected by SSL? Michael Silk

Monday, 27 June

RE: Should login pages be protected by SSL? bluewizard83-de4gahsh
RE: Should login pages be protected by SSL? Lyal Collins
RE: Should login pages be protected by SSL? dave kleiman
RE: Should login pages be protected by SSL? Lyal Collins
RE: Should login pages be protected by SSL? Michael Tsentsarevsky
RE: Should login pages be protected by SSL? Michael Gargiullo
Re: Should login pages be protected by SSL? Saqib Ali
RE: Should login pages be protected by SSL? Ernest Nelson

Tuesday, 28 June

RE: Should login pages be protected by SSL? Simon Zuckerbraun
OT: Review of CISSP Training Material Saqib Ali
Re: Should login pages be protected by SSL? warnings

Wednesday, 29 June

Call for Paritipation: C.I.P.H.E.R Contest Maximillian Dornseif
RE: Review of CISSP Training Material Clement Dupuis
The biggest thing affecting software security? People, apparently. Nick Murison
Re: The biggest thing affecting software security? People, apparently. Steve Milner
RE: The biggest thing affecting software security? People, apparently. Lyal Collins

Thursday, 30 June

Re: The biggest thing affecting software security? People, apparently. Clinton E. Troutman
Re: The biggest thing affecting software security? People, apparently. Irene Abezgauz
Re: The biggest thing affecting software security? People, apparently. Amit
RE: The biggest thing affecting software security? People, apparently. PPowenski
Re: The biggest thing affecting software security? People, apparently. . .
Re: The biggest thing affecting software security? People, apparently. John Manko
Re: The biggest thing affecting software security? People, apparently. Robert Hajime Lanning
Re: Should login pages be protected by SSL? Lucas Holt
Re: Should login pages be protected by SSL? Saqib Ali