Cross-site request forgery flaw on several prominent Web sites allows an attacker to perform actions on behalf of a victim who is already logged into the site Two Princeton University academics have found a type of coding flaw on several prominent Web sites that could jeopardize personal data and in one alarming case, drain a bank account. The type of flaw, called cross-site request forgery (CSRF), allows an attacker to perform actions on a Web site on behalf of a victim who is already logged into the site. Have you hear about the news that two Princeton University academics have published security flaws in some high traffic sites? Why do you you think these sites are taking their time in fixing the problem? . The link for this article located at InfoWorld is no longer available. . A pair of researchers from Harvard expose XSS vulnerabilities on major platforms, endangering user privacy and possible monetary damage.. CSRF Flaws, Data Protection Threats, Web Application Security. . LinuxSecurity.com Team
SecuritySpace.com, http://www.securityspace.com/sspace/index.html, a leading security portal, today launched the Desktop Security Audit, a new tool that will radically reduce the cost of finding and fixing website and PC-based security holes. Built on an ASP model, the Desktop Security Audit is an . . . . SecuritySpace.com, http://www.securityspace.com/sspace/index.html, a leading security portal, today launched the Desktop Security Audit, a new tool that will radically reduce the cost of finding and fixing website and PC-based security holes. Built on an ASP model, the Desktop Security Audit is an easy-to-use tool that enables users to determine if their computers are vulnerable to over 460 different types of cyber-attacks, including Windows based attacks, denial of service attacks, root exploits, CGI abuses, mail server vulnerabilities, and firewall vulnerabilities. The link for this article located at LinuxPR is no longer available. . Uncover the ways IndustryGuard.com’s latest Web Assurance Assessment minimizes expenses for detecting and rectifying online security flaws.. Security Audits, Cyber Attack Prevention, Cost-Effective Security, Website Security Tool. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.