ISAPI Extension Buffer Overflows Buffer Overflows in RPC Services The FBI has teamed up with virus specialists the Sans Institute to produce a list of the top 20 computer security threats facing companies today.
Paul Kurtz, executive director of the Computer Security Industry Alliance, which represents security software companies, said in a statement: "The policy principles outlined by the Business Roundtable align with [our] goal to elevate information...
Mark Foulsham, head of IT at esure, said ISPs should look at the marketing advantages of selling the fact that they cleanse their networks of these security threats to customers. Internet service providers (ISPs) are failing to do enough to stem...
XSS is one of the top 10 web application vulnerabilities identified by the Open Web Application Security Project (OWASP), along with injection attacks and malicious file execution. Browser vulnerabilities such as cross-site scripting (XSS) have the...
Kelly also said Facebook had come under attempted cross-site scripting (CSS) and SQL injection attacks, but that the security layer in Facebook's system was successful in intervening and notifying Kelly's security team of such attempts.
As a result, bugs such as SQL injection and cross-site scripting continue to proliferate, Fortify said. Serious security threats stemming from numerous application vulnerabilities are a direct result of poor or non-existent security processes.