estudio
example SANS policies
The Advanced Research Corporation ®
Information Security: Covering today's security topics
CERIAS Weblogs » Security Myths and Passwords
Web App Security - The New Battlefront
CERIAS Weblogs » Useful Firefox Security Extensions
CERIAS Weblogs » Mambo worm highlights security problems in web ap ...
CERIAS Weblogs
CERIAS - CERIAS Security Seminar Archive
How to 0wn an OSS project, part 2.
How to 0wn an OSS project, part 1.
Michael Sutton's Blog : How Prevalent Are XSS Vulnerabilities?
BindShell.Net: BeEF
Corporate Sloppiness Is the Real Culprit for Data Loss, Not Vilifi ...
The Metasploit Framework
CERIAS - 2007 Symposium Materials
PHPIDS (PHP-Intrusion Detection System) is a simple to use, well structured, fast and state-of-the-art security layer for your PHP based web application.
"Ruby on Rails by default encourages developers to develop insecure web applications. While it's certainly possible to develop secure sites using the Rails framework you need to be aware of the issues at hand..."
When using htmlspecialchars() without specifying the character encoding, XSS attacks that use UTF-7 are possible.