Jeremiah Grossman

A page to show up #1 on Google when searching for "Jeremiah" (Currently #4).
Only the prophet and TV show left!
I have the edge, TV show is cancelled and the prophet isn't generating any new content.

The prophet, TV show, and that pesky Owyang guy going down!
A page to show up #1 on Google when searching for "Jeremiah Grossman", and it FINALLY has!

Friday, October 30, 2009

Best of Application Security (Friday, Oct. 30)

Ten of Application Security industry's coolest, most interesting, important, and entertaining links from the past week -- in no particular order. Regularly released until year end. Then the Best of Application Security 2009 will be selected!

  • Detecting Malice eBook
  • Black Box vs White Box. You are doing it wrong.
  • The Barack Obama Donations Site was Hacked…err, no it wasn’t.
  • New Q3'09 malware data, and the Dasient Infection Library
  • Infrastructure fingerprinting via XSS
  • DNS Rebinding in Firefox
  • Output Validation using the OWASP ESAPI
  • Google Wave as a Tool for Hacking
  • Announcing the release of the Enhanced Mitigation Evaluation Toolkit
  • Asset Valuation (couldn't settle on just one):
  • Lindstrom's Razor
  • A Grain of Salt for Digital Asset Values
  • What is “Lindstrom’s Razor”?
  • Information Asset Value: Some Cold-Hearted Calculations
  • How to Value Digital Assets (Web Sites, etc.)
  • On the value of ‘digital asset value’ for security decisions

Posted by Jeremiah Grossman at 8:22 AM

No comments:

Post a Comment

Newer Post Older Post Home
Subscribe to: Post Comments (Atom)

About Me

My Photo
Jeremiah Grossman
Jeremiah Grossman is the founder and Chief Technology Officer of WhiteHat Security [My Resume]
View my complete profile

Subscribe

Posts
Atom
Posts
Comments
Atom
Comments

Presentations

  • Mo' Money Mo' Problems
  • Get Rich or Die Trying
  • Top Ten Web Hacking Techniques (2008)
  • Website Security Statistics Report (Q1'09)

White Papers

  • Website Security 101
  • Vulnerability Assessment Plus Web Application Firewall (VA+WAF)
  • Technology Alone cannot Defeat Website Attacks: Understanding Technical vs. Logical Vulnerabilities
  • Top 5 Myths of Website Security
  • Seven Business Logic Flaws That Put Your Website At Risk
  • Cross Site Scripting (XSS) Worms and Viruses
  • Cross Site Request Forgery (CSRF)
  • Automated Scanning vs the OWASP Top Ten
  • 10 Things You Should Know about Website Security

Twitter Updates (@jeremiahg)

Twitter Updates

    follow me on Twitter

    (IN)SECURE Magazine

    (IN)SECURE Magazine

    My Links

    • WhiteHat Security
    • Web Application Security Consortium
    • GGAFL
    • OWASP [San Jose]
    • CGI Security
    • ha.ckers.org
    • Maui Tours
    • Maui Real Estate

    Blog Archive

    • ►  2013 (1)
      • ►  January (1)
    • ►  2012 (2)
      • ►  April (1)
      • ►  January (1)
    • ►  2011 (18)
      • ►  December (1)
      • ►  June (1)
      • ►  May (1)
      • ►  March (3)
      • ►  February (5)
      • ►  January (7)
    • ►  2010 (62)
      • ►  December (9)
      • ►  November (2)
      • ►  October (1)
      • ►  September (3)
      • ►  August (2)
      • ►  July (5)
      • ►  June (5)
      • ►  May (3)
      • ►  April (3)
      • ►  March (6)
      • ►  February (12)
      • ►  January (11)
    • ▼  2009 (75)
      • ►  December (7)
      • ►  November (5)
      • ▼  October (8)
        • Best of Application Security (Friday, Oct. 30)
        • Black Box vs White Box. You are doing it wrong.
        • Best of Application Security (Friday, Oct. 23)
        • Best of Application Security (Friday, Oct. 16)
        • Best of Application Security (Friday, Oct. 9)
        • All about Website Password Policies
        • Cloud/SaaS will do for websites what PCI-DSS has n...
        • Best of Application Security (Friday, Oct. 2)
      • ►  September (5)
      • ►  August (11)
      • ►  July (6)
      • ►  June (4)
      • ►  May (5)
      • ►  April (4)
      • ►  March (4)
      • ►  February (5)
      • ►  January (11)
    • ►  2008 (117)
      • ►  December (6)
      • ►  November (2)
      • ►  October (2)
      • ►  September (8)
      • ►  August (8)
      • ►  July (10)
      • ►  June (16)
      • ►  May (16)
      • ►  April (19)
      • ►  March (11)
      • ►  February (4)
      • ►  January (15)
    • ►  2007 (195)
      • ►  December (5)
      • ►  November (19)
      • ►  October (11)
      • ►  September (10)
      • ►  August (13)
      • ►  July (22)
      • ►  June (17)
      • ►  May (25)
      • ►  April (18)
      • ►  March (21)
      • ►  February (12)
      • ►  January (22)
    • ►  2006 (123)
      • ►  December (11)
      • ►  November (21)
      • ►  October (20)
      • ►  September (29)
      • ►  August (16)
      • ►  July (15)
      • ►  June (3)
      • ►  January (8)
    • ►  2005 (99)
      • ►  November (2)
      • ►  October (3)
      • ►  September (5)
      • ►  August (9)
      • ►  July (14)
      • ►  June (15)
      • ►  May (13)
      • ►  April (9)
      • ►  March (11)
      • ►  February (7)
      • ►  January (11)
    • ►  2004 (14)
      • ►  December (7)
      • ►  November (6)
      • ►  June (1)
    • ►  2001 (2)
      • ►  November (1)
      • ►  March (1)
    Picture Window template. Powered by Blogger.