Here are several new pieces I’ve written on Web site/application security. Lots of angles and considerations:
There’s more to web security than meets the eye
Web passwords are often the weakest link
To validate or not, is that the question?
Protecting FTP services running on your Web server
The critical Web-based systems that are going untested and unsecured
Good Web Security Tools and Why They Matter
Web security is like the layers of an onion
And, probably my favorite (a big, big security oversight):
You need to test your marketing site too!
You know the deal….Be sure to check out www.principlelogic.com/resources.html for links to all of my information security whitepapers, podcasts, webcasts, books and more.
“A business associate referred our company to Principle Logic when we were seeking a resource to perform vulnerability /penetration testing for our external and internal networks. We found Kevin Beaver to be professional, well informed, and easy to work with. His testing did not disrupt our networks, and his progress updates were timely.
His final report was very thorough and included security recommendations for our network environment. The executive leadership was so impressed with Kevin’s security expertise, they have extended their agreement to continue to perform periodic testing. We highly recommend Kevin Beaver and Principle Logic as a resource for network security testing.”