11.07.2015 Views

Improving Web Application Security: Threats and - CGISecurity

Improving Web Application Security: Threats and - CGISecurity

Improving Web Application Security: Threats and - CGISecurity

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Related <strong>Security</strong> Resources 685Common Criteria●Windows 2000 Common Criteria Guide (see Chapter 4) at http://www.microsoft.com/technet/treeview/default.asp?url=/technet/security/issues/W2kCCSCG/default.asp.The Windows 2000 Common Criteria <strong>Security</strong> Target (ST) provides a set ofsecurity requirements taken from the Common Criteria (CC) for InformationTechnology <strong>Security</strong> Evaluation. The Windows 2000 product was evaluatedagainst the Windows 2000 ST <strong>and</strong> satisfies the ST requirements.This document is written for those who are responsible for ensuring thatthe installation <strong>and</strong> configuration process results in a secure configuration.A secure configuration is one that enforces the requirements presented inthe Windows 2000 ST, referred to as the Evaluated Configuration.Reference Hub●Reference hub from Building Secure ASP.NET <strong>Application</strong>s athttp://msdn.microsoft.com/library/default.asp?url=/library/en-us/dnnetsec/html/SecNetAP03.asp?frame=true.<strong>Security</strong> Knowledge in Practice●CERT <strong>Security</strong> Improvement Modules at http://www.cert.org/security-improvement/skip.html.Vulnerabilities●●SANs TOP 20 List at http://www.sans.org/top20/.CERT (Computer Emergency Response Team) at http://www.cert.org.World Wide <strong>Web</strong> <strong>Security</strong> FAQ●http://www.w3.org/<strong>Security</strong>/faq/www-security-faq.html.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!