Browsing Monthly Archive November 2012
team 0

How to Deal with Conflict: Good Cooperation in an IT Company

Agenda: Introduction Company success vs. cooperation inside the company Forms of conflict Reasons for bad cooperation a) Mentality depending on the positions b) Understanding of

Privacy 1

Privacy Impact Assessment

What is a Privacy Impact Assessment (PIA)? Privacy Impact Assessment is a process to determine the impacts of a program, system, service, scheme, initiative, application,

November 29, 2012 General Security
code tunnel 1

Exceptions In Injected Code

Injection and API Hooking – When you don’t know enough to know that you are getting it wrong… Code Injection and API hooking techniques are

November 29, 2012 Exploit Development
pw 0

Access Control: Models and Methods

There are times when people need access to information, such as documents, slides, etc., on a network drive but don’t have the appropriate level of

November 28, 2012 General Security
information-security 0

A World of Vulnerabilities

Introduction Every day, we read about cyber-attacks and data breaches, incidents that represent in many cases a disaster for private companies and governments. Technology plays

November 28, 2012 General Security
112712_2207_LowFidelity1.jpg 0

Low Fidelity Prototyping: The Cheapest Corrections in Design Stage Ever!

Agenda: 1. Prototyping – what is it? 2. The design process. 3. Showing the project to client before developers will write any line of code.

November 27, 2012 Other
sqlinj 3

Common Myths about SQLi, Busted

Before going ahead with the topic of SQL injection, let us first take a look into the construct of a web-based application. Most websites have

November 27, 2012 Hacking
programming 0

Good Programming Techniques – Exceptions to Program, Part 2

In a previous article, we introduced the concept of exceptions. As I mentioned, this is the most important thing when writing high-quality software. Today we

November 26, 2012 Other
penetration-testing 4

Owasp ZAP

Introduction ZAP is an open source tool designed to help security professionals as well as developers to find out the security vulnerabilities present in the

November 26, 2012 Application Security
social 0

Keeping Your Social Media Accounts Safe

Whether you’re an average Internet user, or an IT pro who checks Twitter before getting out of bed and goes through several SSH sessions before

November 26, 2012 General Security
cables 0

Computer Network Diagnostics Part 4

In previous articles on the diagnosis of computer networks we generally learned a lot of tools available and understood how they work. Today we will

November 25, 2012 Other
malware analysis 8

Analysis of Malware Samples with the Immunity Debugger API

Introduction Immunity Debugger is a debugger which is very much like Ollydbg. In this tutorial we’ll present the Python API that Immunity Debugger uses for

November 23, 2012 Reverse Engineering
hammer 2

Eight Handy Security Tools for a Novice

Here is a compilation of a few tools that we need to be aware of. The power, the performance and the capabilities of these tools

November 23, 2012 Hacking
harris0071781749 0

Cryptography, Chapter 7

Excerpted from CISSP All-in-One Exam Guide, 6th Edition by Shon Harris (McGraw-Hill; 2013) with permission from McGraw-Hill. Shon Harris, CISSP, MCSE, is the founder and CEO of Shon Harris Security LLC

November 23, 2012 CISSP
Abstract background with binary code. 1

API Hooking with Microsoft Detours

Introduction Microsoft Detours is a library which we can use to build our own DLL that serves as an API monitor when analyzing the results.

November 20, 2012 Exploit Development
password 4

Web Vulnerabilities Explained

Introduction We all know that vulnerabilities in web pages are quite common these days. They range from SQL injections, XSS vulnerabilities, CSRF, etc. In this

November 14, 2012 Application Security
internet anonymity 2

Introduction to Anonymizing Networks – Tor vs I2P

The Right to Anonymity Every operation made in cyber space, every visited web site, and every web service accessed, leave traces of the user’s experience

November 14, 2012 General Security
crime scene Comments Off

Investigating the Crime Scene Part 2: Recovering Files with Autopsy

For part one of this series, please click here. Introduction So, in the previous part we saw how we can set up the environment for

November 14, 2012 Forensics
Corporate_Governance_3 3

The Most Common Problems in the Implementation of Agile Methodologies in Companies, Part 1

As you know, I delight in writing articles on the Agile environment. Why is that? Because I like to advise people about the methodology of

November 13, 2012 Other
wordpress-attack 2

WordPress Plugin Vulnerabilities: From a Developer’s Point of View

1. Introduction We all know the prevalence of the WordPress blogging system and its share of vulnerabilities in the core system alone over the years.

November 13, 2012 Application Security
Back to Top Copyright © 2012 - InfoSec Institute