Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



WebApp Sec: Universal PDF XSS Remediation (Fix)

Universal PDF XSS Remediation (Fix)

From: Cyrill Brunschwiler <cyrill.brunschwiler_at_csnc.ch>
Date: Mon, 12 Feb 2007 08:41:23 +0100

#####################################################################
#
# Subject: Universal PDF XSS
# Author:  Cyrill Brunschwiler (cyrill.brunschwiler_at_csnc.ch)
# Date:    Februar 9th, 2007
#
#####################################################################

Dear reader

Compass worked out an advanced technical paper which explains the
recently identified Adobe Acrobat Plug-in vulnerability. The document
highlights the numerous useless remediation trials. Furthermore, you
will experience why even the Open Web Application Security Project
(OWASP) proposed solution seldom meets the requested security
requirements.

The full featured report is prepared for download at...
http://www.csnc.ch/ (Anti-PDF-XSS Actions 9. Februar 2007)

Best regards
Your Compass Security Team

-------------------------------------------------------------------------
Sponsored by: Watchfire

Cross-Site Scripting (XSS) is one of the most common application-level
attacks that hackers use to sneak into web applications today. This
whitepaper will discuss how traditional XSS attacks are performed, how to
secure your site against these attacks and check if your site is protected.
Cross-Site Scripting Explained - Download this whitepaper today!

https://www.watchfire.com/securearea/whitepapers.aspx?id=701500000008fHA
--------------------------------------------------------------------------
Received on Feb 12 2007

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos