Readlist -> Web-app-security -> Aug-2006
 
  1 msg rewrite rule for apache (31 Aug 2006 )  
  3 msgs Xoop (31 Aug 2006 )  
  1 msg need help with webgoat (31 Aug 2006 )  
  7 msgs Enumerate Web Virtual Site (29 Aug 2006 )  
  1 msg [Full-disclosure] AttackAPI 0.5 (JavaScript tools) (29 Aug 2006 )  
  1 msg CIS Apache Benchmark security standard (25 Aug 2006 )  
  7 msgs Cookie poisoning without XSS (25 Aug 2006 )  
  1 msg Hacme Casino v1.0 (25 Aug 2006 )  
  1 msg Problem about detecting 'SMTP command injection', i.e. cr lf chars in web forms (24 Aug 2006 )  
  1 msg WiKID 2.1.1 released (24 Aug 2006 )  
  6 msgs Mozilla Firefox can't disable browser cache. Why? (23 Aug 2006 )  
  1 msg Administrivia: Time to choose, please vote (22 Aug 2006 )  
  2 msgs Administrivia: Move the list? (21 Aug 2006 )  
  5 msgs testing compiled php (18 Aug 2006 )  
  1 msg (BLED) IPSI (18 Aug 2006 )  
  1 msg World Summit on Intrusion Prevention (18 Aug 2006 )  
  1 msg Registration Now Open!: Security OPUS Infosec Conference - Oct 2-5 2006 - San Francisco, CA (18 Aug 2006 )  
  1 msg Re: Dates Correction - World Summit on Intrusion Prevention, May 8-9, 2007 (18 Aug 2006 )  
  3 msgs Corsaire White Paper: Assessing Java Clients with the BeanShell (18 Aug 2006 )  
  2 msgs 'hack-me' Ajax apps? (17 Aug 2006 )  
  1 msg (somewhat) breaking the same-origin policy by undermining dns-pinning (17 Aug 2006 )  
  5 msgs Mitm new? (16 Aug 2006 )  
  2 msgs RE: [WEB SECURITY] 'hack-me' Ajax apps? (16 Aug 2006 )  
  1 msg Technical note: under some conditions, it's possible to steal HTTP credentials using Flash (16 Aug 2006 )  
  2 msgs Invitation, Slovenia and Italy; Journal Special Issues; c/bb (16 Aug 2006 )  
  1 msg Technical note by Amit Klein: 'Sending arbitrary HTTP requests with Flash 7/8 (+IE 6.0)' (16 Aug 2006 )  
  2 msgs Re: JavaScript Lazy Authorization Forcer and Visited Link Scaner (16 Aug 2006 )  
  1 msg Re: Tomcat Security (16 Aug 2006 )  
  2 msgs Re: [SC-L] Registration Now Open!: 3rd Annual US OWASP AppSec Conference - Oct 16-18 2006 - Seattle, WA (16 Aug 2006 )  
  3 msgs Re: [Full-disclosure] JavaScript get Internal Address (thanks to DanBUK) (13 Aug 2006 )  
  1 msg LAPSE: code auditing tool for Java (12 Aug 2006 )  
  3 msgs Comparison report on web app security scanners now translated to English (10 Aug 2006 )  
  1 msg Unable to disable browser caching in Firefox through HTTP headers (10 Aug 2006 )  
  1 msg Sending multipart/form-data requests from Flash (with arbitrary headers) (10 Aug 2006 )  
  4 msgs Ruby On Rails 1.1.5 Released to Address Critical Vulnerability (10 Aug 2006 )  
  3 msgs Parameter fuzzing and forced browsing (09 Aug 2006 )  
  1 msg Paros 3.2.13 release (08 Aug 2006 )  
  1 msg XSSing the Lan 3 (web trojans.. not a new idea) (08 Aug 2006 )  
  1 msg Announcement: Feed Injection in Web 2.0: Hacking RSS and Atom Feed Implementations [Whitepaper] (08 Aug 2006 )  
  21 msgs Environment for testing WebApp Security Scanners (08 Aug 2006 )  
  1 msg ARES 2007: Call for workshop proposals, deadline Sept 10, 2006 (07 Aug 2006 )  
  7 msgs Attacking the local LAN via XSS (04 Aug 2006 )  
  2 msgs Re: JavaScript port scanning (02 Aug 2006 )  
  1 msg JavaScript port scanner (02 Aug 2006 )  
  3 msgs Fwd: SF new column announcement: E-mail privacy in the workplace (02 Aug 2006 )  
  2 msgs AppSec tools (01 Aug 2006 )  
  1 msg RE: [WEB SECURITY] Reminder: WASC Meet-up at Black Hat (USA 2006) (01 Aug 2006 )  
  2 msgs IEEE Web Security Special (01 Aug 2006 )  
  1 msg Reminder: WASC Meet-up at Black Hat (USA 2006) (01 Aug 2006 )