Home > Software Quality Featured Topic
EMAIL THIS
 Featured Topic:  Top 10 app sec tips
Last Updated: Feb 19, 2007 
What application security issues kept IT pros awake this past year? For many it was simply learning the basics to keep attackers at bay. Advice in these tips can help them rest a little easier. >> Read all the Application Security Strategies tips
>> Submit your own tip for publication
ADVICE:
>> Secure SDLC: Integrating security into your software development life cycle
TIP :Integrating security into the SDLC is essential for developing quality software. While there are no standard practices, these ...
>> SQL injection: Developers fight back
TIP :SQL injection attacks are a popular threat against application security. Anurag Agarwal provides 10 steps developers can use ...
>> Technology alone cannot defeat Web application attacks: Understanding technical vs. logical vulnerabilities
TIP :Application security expert Jeremiah Grossman explains why Web site security can't be fully automated. Web sites have logical ...
>> Discover the power of .NET's code access security
TIP :Input validation is easy with .NET's security tools. Sangita Pakala explains how you can use Link Demand and Strong Names to ...
>> Threat modeling enhanced with misuse cases
TIP :Misuse cases capture all the possible attacks on an application, as well as mitigation steps, helping architects, developers ...
>> Stronger authentication needed for Web applications
TIP :In today's world of sophisticated attacks, application developers need to consider strengthening authentication processes ...
>> Understanding directory traversal attacks
TIP :Directory traversal attacks are the very common, very dangerous HTTP exploits you never hear about. For the sake of your Web ...
>> Biometric authentication replacing passwords: Does authentication get better or worse?
TIP :Biometric authentication eliminates some of the problems we see with password authentication, but it also raises questions.
>> Find Ajax security flaws using tests
TIP :Ajax, JavaScript, RSS technology and Active X are all client-side active content that needs to be manually tested. Andres ...
>> SQL injection: Secure your Web applications
TIP :SQL injection exploits wreak havoc on vulnerable Web sites. Expert Caleb Sima teaches you how to protect your applications ...

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


RELATED CONTENT
Building security into the SDLC (Software development life cycle)
Problems caused by skipping analysis stage of SDLC
Inexpensive phase of SDLC to catch and fix bugs
GatherSpace beefs up cloud-based requirements management
ALM: Best of breed vs. complete systems
Software development life cycle phases, iterations, explained step by step
The role of quality assurance (QA) pros in software security
Common software security risks and oversights
Why the quality assurance department should be involved in testing
How to develop secure applications
Secure software development practices 'not rocket science'

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary

> Web application testing techniques
> Automated software testing pros and cons
> The importance of integrating security into the SDLC
> Stop SQL injection attacks on applications
> How to counter XSS attacks
View full list of Featured Topics

About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2006 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts