This user has contributed 7 articles, 0 code samples and posted 0 messages in our discussion forums.
Articles & Tutorials
-
Improving your Web application development process is one of the best ways to avoid security vulnerabilities and nasty surprises during security assessments. Learn about the points in the software development life cycle where additional security awareness and training is needed to ensure that your organization remains successful and secure.. 
-
It is important for a business to understand the fundamentals of running a vulnerability assessment in order to determine how one will be run and what can be expected from the results. A web application security scanner can automate the process, but a quality assessment may still require actual human eyes to catch specific issues. Learn more about the whys and hows of vulnerability assessments.. 
-
After a security assessment has been performed as part of the web application development lifecycle, it is important to understand how to address and fix any application vulnerabilities that are uncovered. Learn more about the steps that should be taken during the remediation process, from categorization to testing and validation, and find out why collaboration among developers is critical for success.. 
-
While the awareness of SQL Injection attacks has grown in recent years, most developers’ knowledge of how to prevent such attacks is still inadequate. Stored procedures are only part of the answer, and it is also crucial to implement a defense-in-depth strategy. Learn how to build your defense-in-depth strategy, as well as why it is important to validate user input and how to add damage control to your strategy.. 
-
Learn about six common weaknesses that lead to vulnerable code and security exploits, as well as how to resolve these problems without slowing aggressive product schedules. This article also includes a list of resources that further illustrate information security and secure coding and offer insight, principles, and processes that can be integrated to further improve software security.. 
-
In light of breaches in Web application security worldwide, the importance of catching potential areas for intrusion is necessary at the beginning. Performing application vulnerability testing during production (and not after a breach has been detected) can save a company thousands of dollars. The only way to ensure the highest level of security is to build it in from the outset.. 
-
You may find that despite your best efforts, it can be difficult to get your developers on board with software security and ongoing security training. Developers are independent thinkers who need to be given solid reasons why they need to develop with software security in mind. In this article, you will learn 13 ways to get your developers to work with you, rather than against you, toward building a more secure final product. . 