News in the Category: Security Subscribe to the rss of this category.

Total posts: 636

Study: Top Web Application Vulnerabilities Remain Unfixed

FTPOnline ASP.NET Channel, May 13, 2008

Organizations still aren't doing enough to protect their data from Web application vulnerabilities, according to a study released Tuesday by security firm Cenzic....

Query string encryption for ASP.NET

The Code Project Latest Articles, May 8, 2008

Clear text query strings are a potential security threat for your web application. Thus, query strings should be always encrypted....

Understanding Code Access Security in .NET...

DotNetJohn.Com, May 6, 2008

This article discusses the concept of Code Access Security, its functions and the permissions related concepts....

Hacker's Delight

Microsoft Certified Professional Magazine Online | Todays Top Picks, April 30, 2008

A sample of one week's newly discovered vulnerabilities can keep hackers busy and security experts on their toes....

eWeek Says - Scott Guthrie the 28th most influential person in IT !

Joe On .NET, April 30, 2008

... or so says eWeek. [ HERE ] Scott is in fine company with 10 of the 100 most important (according to eWeek) being Microsofties. 3. Steve Ballmer CEO, Microsoft 6. Jean-Philippe Courto...

Use encoded query string with ASP.NET

The Code Project Latest Articles, April 30, 2008

In order to improve the security of ASP.NET web applications, query strings should be always encrypted....

Bad Database Security

Simple Talk, April 29, 2008

Tony Davis, on the security loopholes that arise from poor database security....

Feedback for OWASP .NET Project

ASP.NET Announcements, April 28, 2008

Hi all,We're starting up the OWASP (Open Web Application Security Project) .NET Project Reorganization and I'm looking for your feedback.   OWASP is a worldwide free and open communi...

Microsoft Health & Life Sciences Event Presentations

Joe On .NET, April 27, 2008

Thanks to everyone who attended my AJAX Sessions at the Microsoft Health & Life Sciences Developer's Conference in Atlantic City last week. Here are links to the PowerPoints and Demos ASP.NET A...

Microsoft Health & Life Sciences Event Presentations

Joe On .NET, April 26, 2008

Thanks to everyone who attended my AJAX Sessions at the Microsoft Health & Life Sciences Developer's Conference in Atlantic City last week. Here are links to the PowerPoints and Demos ASP.NET A...

Code Access Security Primer

Guy Barrettes WebLog, April 24, 2008

I was trying to explain quickly what Code Access Security is to someone when I found this blog entry from Emmet Gray:http://home.hot.rr.com/graye/Articles/CodeAccessSecurity.htm In a nutshell, he expl...

3rd International Virtualization Conference & Expo to Present a World Class Faculty

Latest Articles From .NET DEVELOPERS JOURNAL, April 23, 2008

What does the former CTO of XenSource - now CTO of the virtualization and management division at Citrix - have in common with the founder and CEO of PlateSpin, now VP of Business Development at Novell...

Federation Over TCP With WCF

Pablo M. Cibraro (aka Cibrax), April 21, 2008

One of the discussions that we had during the last summit with the rest of "Connected Systems" MVPs was the possibility of supporting a Federation Scenario over TCP in WCF. For many of us that scena...

Microsoft Investigating LocalSystem Access Bug

Microsoft Certified Professional Magazine Online | News, April 18, 2008

Security personnel in Redmond are investigating a newly reported zero-day bug vulnerability in Microsoft operating systems and server systems....

A Park Bench, An Office, or A House

Microsoft Certified Professional Magazine Online | Todays Top Picks, April 14, 2008

How much security you need in Vista and Windows Server 2008 depends on where you're connecting. Choose carefully....

Weekly quickTIP: A Park Bench, An Office, or A House

Microsoft Certified Professional Magazine Online | Columns, April 14, 2008

How much security you need in Vista and Windows Server 2008 depends on where you're connecting. Choose carefully....

SPSecurityTrimmedControl

Software/Technology Discussion, April 14, 2008

This is one of those blog posts that I cannot take credit, but want to keep the information handy for a later time. The SPSecurityTrimmedControl shipped with WSSv3 is a very powerful control. It basi...

Security Exceptions during debug of .NET application

kbAlertz.com :: Visual Studio 2005, April 12, 2008

951595 ... Security Exceptions during debug of .NET applicationThis RSS feed provided by kbAlerz.com.Visit kbAlertz.com to subscribe. It's 100% free and you'll be able to recieve e-mail or RSS upda...

OpenID 2.0 for .NET now available

Rob Howards Blog, April 12, 2008

The OpenID open source project for ASP.NET (DotNetOpenID) now supports the OpenID 2.0 specification and is available for download on Google Code: http://dotnetopenid.googlecode.com/ For businesses or ...

Microsoft, Symantec Rethink Security Approach

Microsoft Certified Professional Magazine Online | News, April 8, 2008

If the traditional notion of infrastructure-based perimeter security is not yet dead, it's not for lack of effort by keynote speakers at this week's RSA Security conference....

'Stirling' Beta Security Solution Released

Microsoft Certified Professional Magazine Online | News, April 8, 2008

Microsoft's released a public beta version of an integrated security solution, code-named "Stirling."...

Apps security testing companies ride wave

InfoWorld: Web services, April 3, 2008

Providers of applications security testing tools say business is taking off, as more customers are building such capabilities into their development lifecycles and large platform providers have picked...

Final Three Security Tutorials Published

Scott on Writing, April 2, 2008

As noted in previous blog entries, I've been working on some tutorials for the www.asp.net site on the topics of forms authentication, authorization, membership, and roles. The first set of tutorials ...

Patterns & Practices WCF Security Guidance

Guy Barrettes WebLog, April 1, 2008

The P&P group recently published a set of WCF security related guidance.  You'll find on this CodePlex site a series of articles and videos. http://www.codeplex.com/WCFSecurity...

WCF Security Guidance

Web Services, March 31, 2008

If you're looking for pragmatic guidace for securing your WCF services, look no further. The WCF Security project has been posting how-to documents and videos on its community site. Now is the perfec...

DotNetNuke Security

Shaun Walker, March 28, 2008

A fundamental aspect of any enterprise software application is security. As opposed to more simple applications such as blogs or photo galleries which typically only require a single authorized user, ...

Patterns and Practices: WCF Security Guidance available online

Wenlong Dongs Blog, March 28, 2008

Here is some good news for people who are looking for WCF Security guidance. The Microsoft Patterns and Practices team has just created the following blog for this: http://blogs.msdn.com/jmeier/archiv...

AxiomaticTokenizer

The Code Project Latest Articles, March 27, 2008

Financial security with one-time tokens...

PowerShell in Lockdown Mode

Microsoft Certified Professional Magazine Online | Todays Top Picks, March 26, 2008

PowerShell's added security measures are in place to prevent someone from hijacking systems through scripting....

Prof. PowerShell: PowerShell in Lockdown Mode

Microsoft Certified Professional Magazine Online | Columns, March 26, 2008

PowerShell's added security measures are in place to prevent someone from hijacking systems through scripting....

Authenticating users with Supporting Tokens in WCF - Binding Extension

Pablo M. Cibraro (aka Cibrax), March 26, 2008

A couple of months ago I described a useful authentication pattern for Web applications based on supporting tokens, one of features provided by WCF. After that, Dominick Baier wrote  a nice and i...

My AJAX World Downloads - AJAX Security & AJAX Patterns Code and PowerPoints

Joe On .NET, March 25, 2008

AJAX World was a great confirmation for me. AJAX, RIA, or whatever term you use to describe this "new" way of building web applications is here to stay. Relative to Microsoft, here are a ...

My AJAX World Downloads - AJAX Security & AJAX Patterns Code and PowerPoints

Joe On .NET, March 25, 2008

AJAX World was a great confirmation for me. AJAX, RIA, or whatever term you use to describe this "new" way of building web applications is here to stay. Relative to Microsoft, here are a ...

My AJAX World Downloads - AJAX Security & AJAX Patterns Code and PowerPoints

Joe On .NET, March 24, 2008

AJAX World was a great confirmation for me. AJAX, RIA, or whatever term you use to describe this "new" way of building web applications is here to stay. Relative to Microsoft, here are a ...

My AJAX World Downloads - AJAX Security & AJAX Patterns Code and PowerPoints

Joe On .NET, March 24, 2008

AJAX World was a great confirmation for me. AJAX, RIA, or whatever term you use to describe this "new" way of building web applications is here to stay. Relative to Microsoft, here are a ...

My AJAX World Downloads - AJAX Security & AJAX Patterns Code and PowerPoints

Joe On .NET, March 24, 2008

AJAX World was a great confirmation for me. AJAX, RIA, or whatever term you use to describe this "new" way of building web applications is here to stay. Relative to Microsoft, here are a ...

Microsoft May Release Out-of-Cycle Patch for Word Flaw

Microsoft Certified Professional Magazine Online | News, March 24, 2008

Microsoft confirmed "very limited, targeted" attacks on an open Word security flaw. The company is researching a patch....

Microsoft Reissues Security Patch for Excel 2003

Microsoft Certified Professional Magazine Online | News, March 21, 2008

A calculation-error bug in Microsoft Office Excel 2003, which was acknowledged by Microsoft last Friday, has been resolved with a security update....

Security bulletins released

Joe Brinkman, March 20, 2008

The 4.8.2 version of DotNetNuke has been released. In many cases the best way to ensure you're running a secure version of DotNetNuke is to update to a version such as 4.8.2 that has no known vulnera...

SID. Vicious?

Simple Talk, March 17, 2008

How do you authenticate credentials provided by the Windows user to ensure they are valid? How do you detect that an authenticated Windows user is an administrator? How do you make it work on Windows ...

MS Tests failing due to Security Errors

Rick Strahls WebLog, March 17, 2008

I'm working on some of my DevConnections demos this weekend and as I'm working through them I've been playing around with some add-in graphing tools to provide some basic graphing support for one of m...

Some Blog Posts on Silverlight Security

Joe On .NET, March 13, 2008

The 2nd presentation at next week's AJAX World is on AJAX Security. After just coming back from MI 08 last week where Silverlight 2.0 was the hot topic, I've been thinking about the Silverlight sec...

Some Blog Posts on Silverlight Security

Joe On .NET, March 13, 2008

The 2nd presentation at next week's AJAX World is on AJAX Security. After just coming back from MI 08 last week where Silverlight 2.0 was the hot topic, I've been thinking about the Silverlight sec...

Some Blog Posts on Silverlight Security

Joe On .NET, March 13, 2008

The 2nd presentation at next week's AJAX World is on AJAX Security. After just coming back from MI 08 last week where Silverlight 2.0 was the hot topic, I've been thinking about the Silverlight sec...

Some Blog Posts on Silverlight Security

Joe On .NET, March 13, 2008

The 2nd presentation at next week's AJAX World is on AJAX Security. After just coming back from MI 08 last week where Silverlight 2.0 was the hot topic, I've been thinking about the Silverlight sec...

Some Blog Posts on Silverlight Security

Joe On .NET, March 13, 2008

The 2nd presentation at next week's AJAX World is on AJAX Security. After just coming back from MI 08 last week where Silverlight 2.0 was the hot topic, I've been thinking about the Silverlight sec...

The Business Drivers for Virtualization

Latest Articles From XML JOURNAL, March 12, 2008

There is plenty of discussion about virtualization, but who does it really benefit? How can enterprises adopt virtualization technologies to address real business problems? Is virtualization just anot...

Patch Tuesday Fixes Critical Excel, Outlook, Web Component and Office Flaws

Microsoft Certified Professional Magazine Online | News, March 11, 2008

Microsoft rolled out four "critical" security bulletins -- all with as many as 12 remote code execution (RCE) vulnerabilities, according to security experts....

Never Write an Insecure ASP.NET Application Ever Again

DevX: .NET Feed, March 10, 2008

Learn to take advantage of the inner workings of ASP.NET's security model to help eliminate security vulnerabilities from your web applications....

AliCommerce Shopping Cart 1.2 - DotNetNuke Module Review

DNN Creative Magazine for DotNetNuke, March 4, 2008

This is an independent review of the AliCommerce Shopping Cart 1.2. The review looks at the module for its features, useability, functionality, ease of use, stability, value for money. Key Features ...

Product Spotlight