
| The Web Application Security Forums | Threads | Posts | Last Post |
|---|---|---|---|
|
Intro The ha.ckers.org and sla.ckers.org web application security lab house rules and a place for you to introduce yourself if you like. Options: RSS |
125 | 1005 | January 06, 2009 03:26PM |
|
News and Links If you have some interesting news or want to throw up a link to discuss it, here's the place. Anything is okay, even shameless vendor launches (since that is often applicable to what we work on). Options: RSS |
378 | 3212 | January 05, 2009 10:55PM |
|
Vendor Talk This is a place for us to start seriously talking about vendors. Who's great, who's not, what's it cost, how does it relate to their competitors and would we buy it? A place to talk about snakeoil, and brilliant products alike. Marketing fluff is forbidden. Options: RSS |
12 | 61 | November 05, 2008 06:03AM |
|
Bugs Bug reports, feature enhancements or other complaints with the site, with us or just tell us what a miserable existance you have. No death threats or poetry please. Just kidding, no poetry please. Options: RSS |
56 | 383 | December 28, 2008 01:41PM |
|
Jobs Ever wanted to work as a "chief hacker" "security evangelist"? This is a place to post jobs or ask for work. Over time as I hear about job offers, we can consolidate them into this board. Options: RSS |
96 | 405 | December 22, 2008 03:34PM |
|
Privacy Who's got it? Who's giving it away? How to protect your privacy and steal it from other people. For intellectual privacy, personal privacy, and blackhats alike... Options: RSS |
62 | 411 | December 21, 2008 05:01AM |
|
Robots/Spiders/CAPTCHAs, oh my How robots and spiders are causing issues, how to stop them. We can also talk about Completely Automated Public Turing Test To Tell Computers And Humans Apart - their use, their compliance issues, porn proxies, PWNtcha and other ways to defeat them. Options: RSS |
42 | 370 | October 10, 2008 09:57PM |
|
SQL and Code Injection How do you completely compromise a machine given a text box or badly validated input box? This is a place to talk about code issues (PHP includes, null byte injection, backticks, pipe, etc...) as well as how to properly construct an SQL injection attack. Options: RSS |
381 | 2278 | January 07, 2009 04:08AM |
|
DoS How do we crash systems, browsers, or otherwise bring things to a halt, and how do we protect those things? Options: RSS |
37 | 201 | November 30, 2008 07:59PM |
|
CSRF and Session Info Q and A on cross site request forgeries and breaking into sessions. It's one of the attacks that XSS enables and the attack of the future. For Session, fixations, hijacking, lockout, replay, session riding etc.... Options: RSS |
99 | 730 | January 05, 2009 11:13PM |
|
Full Disclosure Where you should disclose your vulnerabilities. Go read RFPolicy if you want to do responsible disclosure, and go here for when all else fails. Options: RSS |
252 | 3942 | January 06, 2009 04:06AM |
|
Projects Whether this is about ha.ckers.org, sla.ckers.org or some other project you are interested in or want to talk about, throw it in here to get feedback. Options: RSS |
130 | 2125 | January 06, 2009 03:48PM |
|
Networking This group should mostly be dealing with how web applications enable networking security issues that are otherwise not there. Everything is being tunneled over port 80 now so what does that enable and how do we fix it? Options: RSS |
40 | 280 | January 06, 2009 10:19AM |
|
Search Engine Hacking and SEO Ways to improve page rank, or deceptively get more users to your websites or away from your competition. Where you can discuss SEO (search engine optimization) issues as it relates to computer security. Options: RSS |
27 | 211 | November 21, 2008 10:54AM |
|
SPAM Ways to stop spam, detect robotic activity, and actually harm the spam trade, as well as how it works, how to circumvent filters, etc. Options: RSS |
26 | 163 | December 29, 2008 08:14PM |
|
Wireless Security For 802.11 and bluetooth security people alike. Latest trends, attack surface issues, and prevention. How wireless security is becoming the new vector to hacking corporate websites and applications. Options: RSS |
25 | 169 | January 06, 2009 08:02PM |
|
XSS Info Q and A for any cross site scripting information. Feel free to ask away. Options: RSS |
529 | 5170 | January 06, 2009 09:47AM |
|
OMG Ponies For any nonsense or banter that doesn't fit anywhere else. LoL! omg! ROFL! Options: RSS |
382 | 3588 | January 07, 2009 04:49AM |