Palisade Magazine

 
Catch'em Young - How to discover vulnerabilities early

November 2004

Catch'em Young - How to discover vulnerabilities early

by Roshen Chandran, CISSP

Bugs are introduced at every stage in the development lifecycle. Some of them are caught quickly in the same stage itself. However, many are caught only much later. Here’re the systems we find to be most effective to address security bugs… more →

Integrating Smart Cards in Web Applications

by Abhishek Kumar, BS7799 LA

Smart cards can enhance the security of many web applications — they provide a secure and mobile platform for authentication and non-repudiation. In this article we look at the problems they solve (and do not solve), and the factors to be considered in their selection… more →

Of Captchas, Gimpys and BaffleText …

by Andres Desa, BS7799 LA

Automated computer programs, or bots, can repeatedly hit your web site and execute thousands of requests a minute. These bots can mount brute force attacks to break passwords, automate registrations, fake large volume of support queries, etc. If you haven’t taken protection against these yet, you might want to evaluate the options. In this article, we look at the state of the art in foiling bots… more →

QuizQuiz: SQL Injection Attacks

How can I protect my application from SQL Injection attacks?

  1. Check all user inputs for special characters like " ‘ "
  2. Use Database stored procedures
  3. Use parametrized queries instead of dynamic SQL statements
  4. All of the above

more →

Review: How to Break Software Security

by James A. Whittaker, Herbert H. Thompson

We take a look at the “How to Break Software Security” book by James A. Whittaker & Herbert H. Thompson on software security testing and attack techniques… more →

Search this website

 Search website

Stay Informed

Want to know when the new issues are out? Just fill in your details, we will take care of notifying you when new issues are released:




Subscribe  Unsubscribe

Write to Us

All flowers, brickbats and suggestions are welcome. You can put in yours on the feedback page.

News & Events

  • 03.03.10. Binu Thomas, CTO Plynt, presented at the RSA Conference 2010 on the topic “Application Security Across the Enterprise: Lessons from the Trenches”. This is the fifth time Paladion has been invited to present here.
  • 25.12.09. Plynt has been selected as a finalist for Red Herring’s Global 100 award, a prestigious list honoring the year’s most promising private technology ventures from around the world.
  • 10.12.09. Deloitte Fast 50 India features Paladion 4 years in a row. The ranking of the 50 fastest growing technology companies places Paladion in the 19th spot.
  • 21.05.09. ICICI Bank and Paladion Have Been Awarded the Best Banking Security Systems Project by the Asian Banker IT Implementation Awards Program
  • 20.04.09. Info Security Products Guide Names Plynt Certification Program Winner of the 2009 Tomorrow’s Technology Today Award