Topics


Blogs


Forums


Samples


Media


Labs


Resources

 




DevCentral > Weblogs > Lori MacVittie - Two Different Socks

security

There are 122 entries for the tag security

Clickjacking Protection Using X-FRAME-OPTIONS Available for Firefox


posted @ Tuesday, June 23, 2009 3:27 AM | Feedback (2)

Opera Unite Cuts out the Middleman


posted @ Friday, June 19, 2009 3:56 AM | Feedback (0)

What is server offload and why do I need it?


posted @ Wednesday, June 17, 2009 4:07 AM | Feedback (1)

Out of Office Reply


posted @ Wednesday, June 10, 2009 4:25 AM | Feedback (4)

Infrastructure Matters: Challenges of Cloud-based Testing


posted @ Wednesday, June 10, 2009 3:24 AM | Feedback (3)

The Gluten-free Application Network


posted @ Friday, June 05, 2009 4:08 AM | Feedback (0)

The Secret of the Security Safety Dance


posted @ Wednesday, June 03, 2009 3:58 AM | Feedback (0)

The network ain’t big enough for the both of us


posted @ Friday, May 29, 2009 3:49 AM | Feedback (0)

Beware Using Internal Encryption as an IT Security Blanket


posted @ Thursday, May 28, 2009 4:02 AM | Feedback (0)

The IT Security Flowchart


posted @ Thursday, May 21, 2009 4:22 PM | Feedback (0)

Greedy (IT) Algorithms


posted @ Monday, May 18, 2009 3:16 AM | Feedback (0)

How to secure virtualized applications against the unknown


posted @ Tuesday, May 12, 2009 3:45 AM | Feedback (0)

Get your SaaS off my cloud


posted @ Monday, May 11, 2009 3:38 AM | Feedback (8)

The InfoSec Prayer


posted @ Thursday, May 07, 2009 9:40 AM | Feedback (0)

Cloud computing is not Burger King. You can’t have it your way. Yet.


posted @ Thursday, May 07, 2009 3:11 AM | Feedback (4)

Your load balancer wants to take a level of fighter and wizard


posted @ Tuesday, May 05, 2009 3:38 AM | Feedback (4)

The Real Meaning of Cloud Security Revealed


posted @ Monday, May 04, 2009 3:37 AM | Feedback (3)

Virtual Reality


posted @ Tuesday, April 28, 2009 3:00 AM | Feedback (0)

Jedi Mind Tricks: HTTP Request Smuggling


posted @ Thursday, April 23, 2009 3:39 AM | Feedback (1)

It’s like load balancing. On steroids.


posted @ Monday, April 20, 2009 3:40 AM | Feedback (5)

Dear Slashdot: You get what you pay for


posted @ Friday, April 17, 2009 4:56 AM | Feedback (37)

The Web 2.0 Botnet: Twisting Twitter and Automated Collaboration


posted @ Monday, April 13, 2009 4:05 AM | Feedback (0)

Ruby developers ignore security risks, claim X-JSON header ‘nothing serious’


posted @ Tuesday, April 07, 2009 9:25 AM | Feedback (8)

HTTP Pipelining: A security risk without real performance benefits


posted @ Thursday, April 02, 2009 3:30 AM | Feedback (4)

The Web 2.0 API: From collaborating to compromised


posted @ Wednesday, April 01, 2009 3:46 AM | Feedback (0)

Would you risk $31,000 for milliseconds of application response time?


posted @ Monday, March 30, 2009 3:21 AM | Feedback (1)

Why you must dive Into the Breach


posted @ Thursday, March 26, 2009 3:58 PM | Feedback (0)

Can the Cloud survive regulation?


posted @ Thursday, March 26, 2009 5:47 AM | Feedback (0)

Remember when…it was sprawl or nothing?


posted @ Monday, March 23, 2009 3:21 AM | Feedback (0)

Remember when…you had to choose between security and speed?


posted @ Monday, March 16, 2009 3:39 AM | Feedback (0)

4 Reasons We Must Redefine Web Application Security


posted @ Wednesday, March 11, 2009 3:21 AM | Feedback (0)

Remember when…you had to choose between agility and performance?


posted @ Monday, March 09, 2009 4:30 AM | Feedback (0)

Using Resource Obfuscation to Reduce Risk of Mass SQL Injection


posted @ Thursday, March 05, 2009 3:46 AM | Feedback (3)

Do you control your application network stack? You should.


posted @ Wednesday, February 25, 2009 3:13 AM | Feedback (0)

Dynamic Infrastructure: The Cloud within the Cloud


posted @ Wednesday, February 18, 2009 4:14 AM | Feedback (0)

The House that Load Balancing Built


posted @ Monday, February 16, 2009 5:10 AM | Feedback (2)

If you aren’t asking “what if” now you’ll be asking “why me” later


posted @ Thursday, February 12, 2009 3:41 AM | Feedback (0)

Interoperability between clouds requires more than just VM portability


posted @ Tuesday, February 10, 2009 7:59 AM | Feedback (4)

Who owns application delivery meta-data in the cloud?


posted @ Friday, February 06, 2009 4:39 AM | Feedback (4)

Web Application Security: Where do we go from here?


posted @ Tuesday, February 03, 2009 4:01 AM | Feedback (1)

The Great Client-Server Architecture Myth


posted @ Monday, February 02, 2009 4:38 AM | Feedback (0)

Cloud interoperability must dig deeper than the virtualization layer


posted @ Monday, January 26, 2009 3:40 AM | Feedback (3)

SANS Top 25 Epic Fail: CWE-319


posted @ Monday, January 19, 2009 3:57 AM | Feedback (3)

I am in your HTTP headers, attacking your application


posted @ Thursday, January 15, 2009 9:12 AM | Feedback (2)

3 reasons you need a WAF even if your code is (you think) secure


posted @ Wednesday, January 14, 2009 4:22 AM | Feedback (2)

Building an elastic environment requires elastic infrastructure


posted @ Tuesday, January 13, 2009 4:15 AM | Feedback (9)

Stop brute force listing of HTTP OPTIONS with network-side scripting


posted @ Monday, January 05, 2009 5:58 AM | Feedback (4)

How VM sprawl will drive the urgency of the network evolution


posted @ Friday, December 19, 2008 7:10 AM | Feedback (1)

News Flash: Some applications aren't suited for the public cloud


posted @ Thursday, December 18, 2008 4:14 AM | Feedback (3)

The Secret Knowledge of Developers that Network Administrators Want


posted @ Tuesday, December 16, 2008 5:55 AM | Feedback (3)

9 ways to use network-side scripting to architect faster, scalable, more secure applications


posted @ Thursday, December 11, 2008 4:04 AM | Feedback (1)

Why Flash can't win the Web application war


posted @ Wednesday, December 10, 2008 4:35 AM | Feedback (29)

Security is not a luxury item


posted @ Monday, December 08, 2008 3:52 AM | Feedback (1)

The Context-Aware Cloud


posted @ Tuesday, December 02, 2008 7:15 AM | Feedback (2)

Managing Virtual Infrastructure Requires an Application Centric Approach


posted @ Monday, December 01, 2008 2:59 AM | Feedback (1)

A client is still a client even when it's on the space station


posted @ Friday, November 14, 2008 3:08 AM | Feedback (0)

Virtualization: How to Isolate Application Traffic


posted @ Friday, November 07, 2008 6:33 AM | Feedback (2)

Is OpenID too open?


posted @ Monday, October 20, 2008 4:02 AM | Feedback (5)

Cloud Computing and Infrastructure 2.0


posted @ Friday, October 17, 2008 3:58 AM | Feedback (8)

Is Twitter the newest data security threat?


posted @ Thursday, October 16, 2008 4:00 AM | Feedback (6)

Silverlight 2.0 released, support for Eclipse included


posted @ Tuesday, October 14, 2008 1:19 PM | Feedback (0)

Data center consolidation drives business case for secure remote access


posted @ Monday, October 13, 2008 4:16 AM | Feedback (0)

Google claims analyst research firm site is an attack site, serving up malware


posted @ Friday, October 10, 2008 6:00 AM | Feedback (3)

8 things you can do with a proxy


posted @ Wednesday, October 08, 2008 4:27 AM | Feedback (0)

Moore's law is a double-edged sword


posted @ Tuesday, October 07, 2008 4:10 AM | Feedback (0)

Telecommute your way to a greener bottom line


posted @ Monday, October 06, 2008 12:54 PM | Feedback (2)

New TCP vulnerability about trust, not technology


posted @ Friday, October 03, 2008 5:06 AM | Feedback (2)

Virtual Server Sprawl: FUD or FACT?


posted @ Wednesday, October 01, 2008 3:43 AM | Feedback (6)

If you don't know the difference between HTTP and DNS, don't blog about it


posted @ Tuesday, September 30, 2008 8:19 AM | Feedback (2)

Which security strategy takes more time: configuration or coding?


posted @ Monday, September 29, 2008 4:38 AM | Feedback (3)

ROI Justification(s) for Application Delivery Controllers


posted @ Monday, September 22, 2008 4:44 AM | Feedback (0)

Virtualization: Just how far are we willing to take it?


posted @ Thursday, September 18, 2008 7:26 AM | Feedback (1)

The Three "Itys" of Cloud Computing


posted @ Wednesday, September 17, 2008 3:20 AM | Feedback (0)

BusinessWeek takes viral advertising a little too seriously


posted @ Tuesday, September 16, 2008 5:40 AM | Feedback (1)

Cloudware and information privacy: TANSTAAFL


posted @ Monday, September 15, 2008 7:07 AM | Feedback (0)

Why it's so hard to secure JavaScript


posted @ Friday, September 12, 2008 4:49 AM | Feedback (4)

A Billion More Laughs: The JavaScript hack that acts like an XML attack


posted @ Thursday, September 11, 2008 4:01 AM | Feedback (8)

Governance in the Cloud


posted @ Tuesday, September 09, 2008 4:17 AM | Feedback (0)

Dear Data Center Guy


posted @ Friday, August 29, 2008 4:05 AM | Feedback (1)

Google Gmail: The Lawn Darts of the Internet


posted @ Friday, August 29, 2008 3:03 AM | Feedback (1)

You're Doing It Wrong


posted @ Tuesday, August 26, 2008 5:01 AM | Feedback (4)

Some services are more equal than others


posted @ Thursday, August 21, 2008 5:02 AM | Feedback (0)

All your control are belong to us


posted @ Wednesday, August 20, 2008 3:46 AM | Feedback (0)

Reliability does not come from SOA Governance


posted @ Monday, August 18, 2008 5:00 AM | Feedback (1)

OMG! A VPN can secure connections into cloud computing hosted services


posted @ Thursday, August 14, 2008 8:43 AM | Feedback (1)

What's the difference between a web application and a blog?


posted @ Wednesday, August 13, 2008 3:35 AM | Feedback (2)

Follow up: Fail Open or Fail Closed?


posted @ Tuesday, August 12, 2008 7:25 AM | Feedback (1)

The Unpossible Task of Eliminating Risk


posted @ Monday, August 11, 2008 3:54 AM | Feedback (3)

Is the Mozilla FireFox 3 SSL policy bad for the web?


posted @ Tuesday, August 05, 2008 10:59 AM | Feedback (3)

Compliance in the Cloud


posted @ Tuesday, August 05, 2008 4:56 AM | Feedback (0)

8 things you can do with an ADC to make your apps secure, fast, and available


posted @ Friday, August 01, 2008 4:56 AM | Feedback (1)

Port Knocking: What are you hiding in there?


posted @ Tuesday, July 29, 2008 9:21 AM | Feedback (3)

4 reasons not to use mod_security


posted @ Wednesday, July 23, 2008 5:53 AM | Feedback (17)

Your Stack Trace, Show It To Me


posted @ Tuesday, July 22, 2008 8:46 AM | Feedback (3)

Three Web Application Vulnerabilities You Need to Know


posted @ Friday, July 18, 2008 12:52 PM | Feedback (0)

Horizontal and Vertical Security: Which do you need?


posted @ Wednesday, July 16, 2008 8:24 AM | Feedback (0)

4 Things You Need in a Cloud Computing Infrastructure


posted @ Thursday, July 10, 2008 5:45 AM | Feedback (0)

Layer 4 vs Layer 7 DoS Attack


posted @ Tuesday, July 08, 2008 4:31 AM | Feedback (2)

Fail Open or Fail Closed?


posted @ Wednesday, July 02, 2008 4:58 AM | Feedback (6)

On Walden's (very secure) Web


posted @ Wednesday, June 25, 2008 5:18 AM | Feedback (2)

Why Vulnerabilities Go Unpatched


posted @ Thursday, June 19, 2008 5:24 AM | Feedback (0)

6 Reasons You Need an Application Delivery Controller Now


posted @ Wednesday, June 18, 2008 7:59 AM | Feedback (0)

Improving Security Through Dynamic Resource Obfuscation


posted @ Monday, June 16, 2008 7:46 AM | Feedback (0)

Is deprecation of APIs a security risk?


posted @ Thursday, June 05, 2008 7:44 AM | Feedback (0)

What IT Security can learn from a restroom sign


posted @ Thursday, May 29, 2008 5:46 AM | Feedback (1)

iRules: Content Scrub rule for the Adobe Flash Exploit


posted @ Thursday, May 29, 2008 5:40 AM | Feedback (0)

How do you stop psd5c4fpsd3a4epsd227?


posted @ Wednesday, May 28, 2008 11:00 AM | Feedback (0)

PCI DSS Requirements 6.6: A best practice for the rest of us


posted @ Thursday, May 22, 2008 4:42 AM | Feedback (1)

(Security) Thunder from Down Under


posted @ Friday, May 09, 2008 8:15 AM | Feedback (0)

IM (Social) Security


posted @ Thursday, May 01, 2008 7:50 AM | Feedback (0)

Security versus Integration


posted @ Monday, April 28, 2008 8:12 AM | Feedback (1)

Web 2.0: What Lies Beneath


posted @ Monday, April 28, 2008 7:05 AM | Feedback (0)

Reversing Security


posted @ Monday, April 14, 2008 5:38 AM | Feedback (0)

Centralized Authorization and SOA: Defy the Laws of Tradition


posted @ Monday, April 07, 2008 10:23 AM | Feedback (0)

Application Security: Loose-Coupling for Legacy Apps


posted @ Tuesday, March 18, 2008 12:24 PM | Feedback (0)

Isn't That Just a Bunch of Templates?


posted @ Wednesday, December 19, 2007 9:47 AM | Feedback (0)

Full (proxy) Security


posted @ Thursday, December 13, 2007 12:27 PM | Feedback (1)

Overzealous Security


posted @ Thursday, December 06, 2007 8:33 AM | Feedback (0)

The Fix Must Occur by Rewriting the Code. Wait, What?


posted @ Tuesday, November 06, 2007 1:22 PM | Feedback (8)

Web 2.0 Security Part 5: Strategies to CUT RISK


posted @ Monday, July 23, 2007 8:29 AM | Feedback (1)

Web 2.0 Security Part 4: A MASHup of Problems


posted @ Wednesday, July 18, 2007 12:38 PM | Feedback (0)

Web 2.0 Security Part 3: A MASHup of Problems


posted @ Wednesday, July 11, 2007 1:11 PM | Feedback (1)