11.07.2015 Views

Improving Web Application Security: Threats and - CGISecurity

Improving Web Application Security: Threats and - CGISecurity

Improving Web Application Security: Threats and - CGISecurity

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

684 <strong>Improving</strong> <strong>Web</strong> <strong>Application</strong> <strong>Security</strong>: <strong>Threats</strong> <strong>and</strong> CountermeasuresAlerts <strong>and</strong> NotificationMicrosoft <strong>Security</strong> Notification Services●●Virus alerts for Microsoft products at http://www.microsoft.com/technet/treeview/?url=/technet/security/virus/alerts/.<strong>Security</strong> Notification Service at http://register.microsoft.com/subscription/subscribeme.asp?ID=135.Use this service to register for regular e-mail bulletins that notify you of theavailability of new fixes <strong>and</strong> updates.Third Party <strong>Security</strong> Notification Services●●●●●CERT Advisory Mailing List at http://www.cert.org/contact_cert/certmaillist.html.Informative advisories are sent when vulnerabilities are reported.Windows <strong>and</strong> .NET Magazine <strong>Security</strong> UPDATE at http://email.winnetmag.com/winnetmag/winnetmag_prefctr.asp#<strong>Security</strong>.This announces the latest security breaches <strong>and</strong> corresponding fixes. It also givesadvice on reacting to vulnerabilities.NTBugtraq at http://www.ntbugtraq.com/default.asp?pid=31&sid=1#020.This is an open discussion of Windows security bugs <strong>and</strong> exploits. Vulnerablitiesthat do not have patches are discussed.Internet Storm Center at http://isc.incidents.org.This site tracks the frequency of worms, denial of service attacks, as well as otherkinds of attacks.<strong>Security</strong> Focus <strong>Web</strong> site at www.securityfocus.com.Additional ResourcesChecklists <strong>and</strong> Assessment Guidelines●●IIS 5.0 <strong>Security</strong> Checklist at http://www.microsoft.com/technet/treeview/default.asp?url=/technet/security/tools/chklist/iis5chk.asp.<strong>Security</strong> Tools <strong>and</strong> Checklists at http://www.microsoft.com/technet/treeview/default.asp?url=/technet/security/tools/tools.asp.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!