This site will look much better in a browser that supports web standards, but it is accessible to any browser or Internet device.
Courtesy of Core Competence, Inc.
This page uses style sheets created by Ruthsarian Labs
A Semantic Attack on URLs by Bruce Schneier
Advanced SQL Injection by Chris Anley
Blind SQL Injectionby Kevin Spett
Blocking Instant Messaging by David Piscitello
CGISecurity's Web Application Document Library
Creating Arbitrary Shellcode in Unicode Expanded Strings by Chris Anley
Exploiting and Protecting Oracle by Pete Finnigan
Exploiting and Protecting Oracle by Pete Finnigan
External Operating System Commands: Backdoor or feature? Hacking with SAP R/3 by Stefan Hoelzner
HTML Form Protocol Attack by Jochen Topf
Hackproofing Oracle Application Server by David Litchfield
Hackproofing Lotus Domino Web Server by David Litchfield
Introduction to LDAP Security by Sacha Faust
Oracle Security papers (collection of 65) by Pete Finnigan
Polymorphic Shellcodes vs. Application IDSs by Fermin Serna
Securing Oracle by Ken Ihrer (8.1.6)
Securing the Apache Web Server by Rik Farrow
Security and Peer-to-Peer Applications by Dave Piscitello
Session Fixation Vulnerability in Web-based Applications by Mitja Kolsek
SQL Injection and Oracle, (Part I), (Part II) by Pete Finnigan
The Importance of Application Security by Matthew Levine
Where is Application Protection best applied? by Dave Piscitello
URL Encoded Attacks: Attacks using the common web browser by Gunter Ollmann
Web Application and LDAP Injection by Sacha Faust
Application Proxies Watchguard Technologies
Application Layer Protection by Andrew Conry-Murray
Application Security - Next Layer of Protection by Keith Pasley
Web application security fundamentals Microsoft
Application Layer Filtering (ALF) by Deb Shinder
Improving Web Application Security MSDN
Secure a web application, Java style by Michael Cymerman
Affordable Web Server Vunlerability Assessment by Dave Piscitello
How to Harden Your Microsoft Web Server (Basics) by Dave Piscitello
How To Secure MS Internet Information Server at Security Wizards (secwiz)
IIS Security and Programming Countermeasures by Jason Coombs
Improving Apache by Gary Bahadur & Mike Shema
OWASP Guide to Building Secure Web Application and Web Services
Penetration Testing for Web Applications (Part I,Part II,
Part III) by Jody Melbourne and David Jorm
Prevention of the OWASP Top 10 in PERL by Daniel Goscomb
Review: Syhunt Web Security Suite by Dave Piscitello
Web Access Security by Chris King
Web Application Security by Eren Reschef, Perfecto Technologies
About Applications Microsoft IIS