WebApp Sec mailing list archives

Re: Hash for data in transit


From: Martin Tartarelli <martin.tartarelli () gmail com>
Date: Wed, 21 Jul 2010 09:46:41 -0300

Hi Richard,

HDIV (http data integrity validator ) is Open Source Security
Framework for HTTP.
OWASP ESAPI is another security tool

2010/7/20 Nikhil Wagholikar <visitnikhil () gmail com>:
Hi Richard,

CRC is one of the best methods for integrity checking (more precisely
'detection') of data between web server and web browser.

In any case, like Robert said, HTTPs will do integrity check for the data.

---
Nikhil Wagholikar
Senior Consultant
Ernst and Young (India)
Web: http://www.ey.com/India

On 21 July 2010 01:33, <richardhigh () imgva com> wrote:

Does anyone know of any tools out there that can be used to ensure the integrity of data while in transit from a web 
app and a user using a website to enter information?

I've heard of Tripwire and ossec but those more for OS or for files at rest.

Any ideas are welcomed. Thanks.



This list is sponsored by Cenzic
--------------------------------------
Let Us Hack You. Before Hackers Do!
It's Finally Here - The Cenzic Website HealthCheck. FREE.
Request Yours Now!
http://www.cenzic.com/2009HClaunch_Securityfocus
--------------------------------------




This list is sponsored by Cenzic
--------------------------------------
Let Us Hack You. Before Hackers Do!
It's Finally Here - The Cenzic Website HealthCheck. FREE.
Request Yours Now!
http://www.cenzic.com/2009HClaunch_Securityfocus
--------------------------------------



-- 
Martin Tartarelli
Linux User #476492
http://owasp.org/index.php/Argentina
--



This list is sponsored by Cenzic
--------------------------------------
Let Us Hack You. Before Hackers Do!
It's Finally Here - The Cenzic Website HealthCheck. FREE.
Request Yours Now! 
http://www.cenzic.com/2009HClaunch_Securityfocus
--------------------------------------


Current thread: