Affichage des articles dont le libellé est burps. Afficher tous les articles
Affichage des articles dont le libellé est burps. Afficher tous les articles

mardi 15 octobre 2013

Burp’s Session Handling Mechanisms

(this abstract is from an external source)







Web applications, nowadays, handle sessions and state by implementing session expiration and sessionid lifecycle in a more secure manner to avoid security issues such as session hijacking. They will invalidate your session based on idle timeout or absolute timeout as suggested by OWASP.



Read more => http://resources.infosecinstitute.com/burps-session-handling-mechanisms/

Motorola Is Listening

(this abstract is from an external source)







In June of 2013, I made an interesting discovery about the Android phone (a Motorola Droid X2) which I was using at the time: it was silently sending a considerable amount of sensitive information to Motorola, and to compound the problem, a great deal of it was over an unencrypted HTTP channel.



Read more => http://www.beneaththewaves.net/Projects/Motorola_Is_Listening.html