background preloader

OWASP WebScarab Project

OWASP WebScarab Project

BugiX - Security Research webgoat - Project Hosting on Google Code After 1,000,000+ downloads and 10+ years, we have started an effort to significantly upgrade WebGoat. We are looking for help. If you have experience in any of these areas and time to contribute: UI Design Spring MVC JavaEE ESAPI and other security controls Application attacks (lessons revamp) Technical writing Please contact Bruce Mayhew (webgoat AT owasp DOT org). The source code repository has moved to github, You can find us at There are many WebGoat repositories on GitHub. WebGoat is a deliberately insecure J2EE web application designed to teach web application security lessons. Why the name 'WebGoat'? Goals Web application security is difficult to learn and practice. The primary goal of the WebGoat project is simple: create a de-facto interactive teaching environment for web application security. Questions If you have questions or suggestions regarding WebGoat, send email to Bruce Mayhew at "webgoat AT owasp DOT org" Releases WebGoat 5.4 Standard:

Armorize Blog Laramies Corner Massive Scareware Serving Blackhat SEO, the Koobface Gang Style | Latest Security News | GSO Ali Baba and the 40 thieves LLC are once again multi-tasking, this time compromising hundreds of thousands of web sites, and redirecting Google visitors -- through the standard http referrer check -- to scareware serving domains. What's so special about the domains mentioned in Cyveillance's post, as well as the ones currently active on this campaign? It's the Koobface connection. For instance, the ionisationtools .cn or moored2009 .cn redirectors, as well as the scareware serving premium-protection6 .com; file-antivirus3.com; checkalldata .com; ... Ali Baba and the 40 thieves LLC are once again multi-tasking, this time compromising hundreds of thousands of web sites, and redirecting Google visitors -- through the standard http referrer check -- to scareware serving domains. What's so special about the domains mentioned in Cyveillance's post, as well as the ones currently active on this campaign? This post has been reproduced from Dancho Danchev's blog.

SIPVicious Partner Colleges for Online College Credit Enjoy a hassle-free application process and save money when you enroll at one of StraighterLine's accredited Partner Online Colleges and Universities. Most online colleges and universities have agreed to accept StraighterLine college credits directly. StraighterLine selects Partner Colleges for their rigorous and high quality degree programs as well as for their commitment to individual learners and their needs. All of our Partner Colleges have distance learning options available. With StraighterLine, you can enroll at one of our Partner Colleges or enroll at any college that awards credit for ACE recommended courses. Colleges can make it difficult to receive credit for coursework you have taken. Do you want to attend a StraighterLine partner college? Do you want to attend a college that awards credit for ACE approved courses? Will your college award credit for courses transferred from another college? Remember, recognition of college credit is made by each school. Atlantic Union College

T2 Magazine - From scratch to login promt with T2 2008-12-07, by Iulian Demetrescu I am a Linux user for about 15 years or so and i was always wondering about what is "under the hood" of it and how it's put together. I was especially interested in how a distribution is made up, since there are so many things that you have to take into account. Recently i was asked about one of my customers to deliver an embedded device capable of maintaining a small database, serve some pages via http and print some information on a thermal printer. In an instant i said embedded Linux and the customer agreed. Driven by my customer demands and of course by my unsatisfied curiosity, i started searching the net for such distributions. But in my heart i wanted to build my own Linux. I mentioned earlier that there are some projects on the net, projects that can be used to build your own distribution. After days and days of search, download, try and fail, something caught my attention. The build environment The Target Yourself The development PC 1. 2. 3. 4. 5.

The Cover of Night

Related: