Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Penetration Testing: Re: Vuln Scanner for Web App Source Code

Re: Vuln Scanner for Web App Source Code

From: Haroon Meer <haroon_at_sensepost.com>
Date: Fri, 23 May 2008 08:35:45 +0200

Hi..

Mildly on-topic, i had just made a post to our external blog, on the
sorts of bugs that a Waf/Code Analyzer will never find:
http://www.sensepost.com/blog/2237.html

ActiveX Repurposing.. (aka: Other bugs your static analyzer will never
find..) (aka 0day^H^H 485day bug!)

/mh

-- 
Haroon Meer, SensePost Information Security  |                                                              
http://www.sensepost.com/blog/                                                                              
PGP: http://www.sensepost.com/pgp/haroon.txt |  Tel: +27 83786 6637 

  • application/pgp-signature attachment: stored
Received on May 23 2008
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos