Contribuez à SecuObs en envoyant des bitcoins ou des dogecoins.
Nouveaux articles (fr): 1pwnthhW21zdnQ5WucjmnF3pk9puT5fDF
Amélioration du site: 1hckU85orcGCm8A9hk67391LCy4ECGJca

Contribute to SecuObs by sending bitcoins or dogecoins.

Chercher :
Newsletter :  


Revues :
- Presse
- Presse FR
- Vidéos
- Twitter
- Secuobs





Sommaires :
- Tendances
- Failles
- Virus
- Concours
- Reportages
- Acteurs
- Outils
- Breves
- Infrastructures
- Livres
- Tutoriels
- Interviews
- Podcasts
- Communiques
- USBsploit
- Commentaires


Revue Presse:
- Tous
- Francophone
- Par mot clé
- Par site
- Le tagwall


Top bi-hebdo:
- Ensemble
- Articles
- Revue
- Videos
- Twitter
- Auteurs


Articles :
- Par mot clé
- Par auteur
- Par organisme
- Le tagwall


Videos :
- Toutes
- Par mot clé
- Par site
- Le tagwall


Twitter :
- Tous
- Par mot clé
- Par compte
- Le tagwall


Commentaires :
- Breves
- Virus
- Failles
- Outils
- Tutoriels
- Tendances
- Acteurs
- Reportages
- Infrastructures
- Interviews
- Concours
- Livres
- Communiques


RSS/XML :
- Articles
- Commentaires
- Revue
- Revue FR
- Videos
- Twitter


RSS SecuObs :
- sécurité
- exploit
- windows
- attaque
- outil
- microsoft


RSS Revue :
- security
- microsoft
- windows
- hacker
- attack
- network


RSS Videos :
- curit
- security
- biomet
- metasploit
- biometric
- cking


RSS Twitter :
- security
- linux
- botnet
- attack
- metasploit
- cisco


RSS Comments :
- Breves
- Virus
- Failles
- Outils
- Tutoriels
- Tendances
- Acteurs
- Reportages
- Infrastructures
- Interviews
- Concours
- Livres
- Communiques


RSS OPML :
- Français
- International











Revue de presse francophone :
- Appaloosa AppDome nouent un partenariat pour accompagner les entreprises dans le déploiement et la protection des applications mobiles
- D-Link offre une avec un routeur VPN sans fil AC
- 19 mai Paris Petit-Déjeuner Coreye Développer son business à l'abri des cyberattaques
- POYNTING PRESENTE LA NOUVELLE ANTENNE OMNI-291, SPECIALE MILIEU MARITIME, CÔTIER ET MILIEU HUMIDE
- Flexera Software Les utilisateurs français de PC progressent dans l'application de correctifs logiciels, mais des défis de tailles subsistent
- Riverbed lance SD-WAN basé sur le cloud
- Fujitsu multi-récompensé VMware lui décerne plusieurs Partner Innovation Awards à l'occasion du Partner Leadership Summit
- Zscaler Private Access sécuriser l'accès à distance en supprimant les risques inhérents aux réseaux privés virtuels
- QNAP annonce la sortie de QTS 4.2.1
- Une enquête réalisée par la société de cyber sécurité F-Secure a décelé des milliers de vulnérabilités graves, potentiellement utilisables par des cyber criminels pour infiltrer l'infrastru
- Trouver le juste équilibre entre une infrastructure dédiée et cloud le dilemme de la distribution numérique
- 3 juin - Fleurance - Cybersécurité Territoires
- Cyber-assurances Seules 40 pourcents des entreprises françaises sont couvertes contre les violations de sécurité et les pertes de données
- Des étudiants de l'ESIEA inventent CheckMyHTTPS un logiciel qui vérifie que vos connexions WEB sécurisées ne sont pas interceptées
- Les produits OmniSwitch d'Alcatel-Lucent Enterprise ALE gagnent en sécurité pour lutter contre les cyber-attaques modernes

Dernier articles de SecuObs :
- DIP, solution de partage d'informations automatisée
- Sqreen, protection applicative intelligente de nouvelle génération
- Renaud Bidou (Deny All): "L'innovation dans le domaine des WAFs s'oriente vers plus de bon sens et d'intelligence, plus de flexibilité et plus d'ergonomie"
- Mises à jour en perspective pour le système Vigik
- Les russes ont-ils pwn le système AEGIS ?
- Le ministère de l'intérieur censure une conférence au Canada
- Saut d'air gap, audit de firmware et (in)sécurité mobile au programme de Cansecwest 2014
- GCHQ: Le JTRIG torpille Anonymous qui torpille le JTRIG (ou pas)
- #FIC2014: Entrée en territoire inconnu
- Le Sénat investit dans les monnaies virtuelles

Revue de presse internationale :
- VEHICLE CYBERSECURITY DOT and Industry Have Efforts Under Way, but DOT Needs to Define Its Role in Responding to a Real-world Attack
- Demand letter served on poll body over disastrous Comeleak breach
- The Minimin Aims To Be The Simplest Theremin
- Hacking group PLATINUM used Windows own patching system against it
- Hacker With Victims in 100 Nations Gets 7 Years in Prison
- HPR2018 How to make Komboucha Tea
- Circuit Bender Artist bends Fresnel Lens for Art
- FBI Director Suggests iPhone Hacking Method May Remain Secret
- 2016 Hack Miami Conference May 13-15, 2016
- 8-bit Video Wall Made From 160 Gaming Keyboards
- In An Era Of Decline, News Sites Can t Afford Poor Web Performance
- BeautifulPeople.com experiences data breach 1m affected
- Swedish Air Space Infringed, Aircraft Not Required
- Why cybercriminals attack healthcare more than any other industry
- Setting the Benchmark in the Network Security Forensics Industry

Annuaire des videos
- FUZZING ON LINE PART THREE
- Official Maltego tutorial 5 Writing your own transforms
- Official Maltego tutorial 6 Integrating with SQL DBs
- Official Maltego tutorial 3 Importing CSVs spreadsheets
- install zeus botnet
- Eloy Magalhaes
- Official Maltego tutorial 1 Google s websites
- Official Maltego tutorial 4 Social Networks
- Blind String SQL Injection
- backdoor linux root from r57 php shell VPS khg crew redc00de
- How To Attaque Pc With Back Track 5 In Arabique
- RSA Todd Schomburg talks about Roundup Ready lines available in 2013
- Nessus Diagnostics Troubleshooting
- Panda Security Vidcast Panda GateDefender Performa Parte 2 de 2
- MultiPyInjector Shellcode Injection

Revue Twitter
- RT @fpalumbo: Cisco consistently leading the way ? buys vCider to boost its distributed cloud vision #CiscoONE
- @mckeay Looks odd... not much to go on (prob some slideshow/vid app under Linux)
- [SuggestedReading] Using the HTML5 Fullscreen API for Phishing Attacks
- RT @BrianHonan: Our problems are not technical but cultural. OWASP top 10 has not changed over the years @joshcorman #RSAC
- RT @mikko: Wow. Apple kernels actually have a function called PE_i_can_has_debugger:
- [Blog Spam] Metasploit and PowerShell payloads
- PinkiePie Strikes Again, Compromises Google Chrome in Pwnium Contest at Hack in the Box: For the second time thi...
- @mikko @fslabs y'all wldn't happen to have lat/long data sets for other botnets, wld you? Doing some research (free/open info rls when done)
- RT @nickhacks: Want to crash a remote host running Snow Leopard? Just use: nmap -P0 -6 --script=targets-ipv6-multicast-mld #wishiwaskidding
- An inexpensive proxy service called is actually a front for #malware distribution -

Mini-Tagwall
Revue de presse : security, microsoft, windows, hacker, attack, network, vulnerability, google, exploit, malware, internet, remote, iphone

+ de mots clés pour la revue de presse

Annuaires des videos : curit, security, biomet, metasploit, biometric, cking, password, windows, botnet, defcon, tutorial, crypt, xploit

+ de mots clés pour les videos

Revue Twitter : security, linux, botnet, attack, metasploit, cisco, defcon, phish, exploit, google, inject, server, firewall

+ de mots clés pour la revue Twitter

Top bi-hebdo des articles de SecuObs
- [Ettercap – Partie 2] Ettercap par l'exemple - Man In the Middle et SSL sniffing
- [Infratech - release] version 0.6 de Bluetooth Stack Smasher
- [IDS Snort Windows – Partie 2] Installation et configuration
- [Infratech - vulnérabilité] Nouvelle version 0.8 de Bluetooth Stack Smasher
- Mises à jour en perspective pour le système Vigik
- USBDumper 2 nouvelle version nouvelles fonctions !
- EFIPW récupère automatiquement le mot de passe BIOS EFI des Macbook Pro avec processeurs Intel
- La sécurité des clés USB mise à mal par USBDUMPER
- Une faille critique de Firefox expose les utilisateurs de Tor Browser Bundle
- Installation sécurisée d'Apache Openssl, Php4, Mysql, Mod_ssl, Mod_rewrite, Mod_perl , Mod_security

Top bi-hebdo de la revue de presse
- StackScrambler and the Tale of a Packet Parsing Bug

Top bi-hebdo de l'annuaire des videos
- DC++ Botnet. How To DDos A Hub With Fake IPs.
- Comment creer un server botnet!!!!(Réseau de pc zombies)
- Defcon 14 Hard Drive Recovery Part 3

Top bi-hebdo de la revue Twitter
- RT @secureideas: I believe that all the XSS flaws announced are fixed in CVS. Will test again tomorrow if so, release 1.4.3. #BASESnort
- Currently, we do not support 100% of the advanced PDF features found in Adobe Reader... At least that's a good idea.
- VPN (google): German Foreign Office Selects Orange Business for Terrestrial Wide: Full
- @DisK0nn3cT Not really, mostly permission issues/info leak...they've had a couple of XSS vulns but nothing direct.
- Swatting phreaker swatted and heading to jail: A 19-year-old American has been sentenced to eleven years in pris..
- RT @fjserna You are not a true hacker if the calc.exe payload is not the scientific one... infosuck.org/0x0035.png

Top des articles les plus commentés
- [Metasploit 2.x – Partie 1] Introduction et présentation
- Microsoft !Exploitable un nouvel outil gratuit pour aider les développeurs à évaluer automatiquement les risques
- Webshag, un outil d'audit de serveur web
- Les navigateurs internet, des mini-systèmes d’exploitation hors de contrôle ?
- Yellowsn0w un utilitaire de déblocage SIM pour le firmware 2.2 des Iphone 3G
- CAINE un Live[CD|USB] pour faciliter la recherche légale de preuves numériques de compromission
- Nessus 4.0 placé sous le signe de la performance, de l'unification et de la personnalisation
- [Renforcement des fonctions de sécurité du noyau Linux – Partie 1] Présentation
- [IDS Snort Windows – Partie 1] Introduction aux IDS et à SNORT
- Origami pour forger, analyser et manipuler des fichiers PDF malicieux

Les Tweets pour planetlevel

Si vous voulez bloquer un compte Twitter ou nous en proposer un

Menu > Elements de la revue Twitter : - l'ensemble [tous] - par mots clé [tous] - par compte [tous] - le tagwall [voir]

S'abonner au fil RSS global de la revue Twitter


Précédents / Suivants


Les Tweets filtrés pour " planetlevel" (104 résultats)
S'abonner au fil RSS SecuObs pour le compte Twitter planetlevel


[2010-10-07] - 16:55:31 - @SushiDude @lcamtuf In this case, I was uninformed and hasty. Mea culpa. This is a browser problem.

[2010-10-04] - 03:04:59 - @scarybeasts Do you mean your attack would work if they followed the ESAPI XSS Protection Cheat Sheet and escaped the quote char?

[2010-09-26] - 05:36:54 - RT @securityshell: OWASP JBroFuzz v2.4 http://goo.gl/fb/GLLsD #tools #fuzzer

[2010-09-18] - 22:37:44 - Join the Stack Exchange based Application Security forum at Area 51 now! Please RT. http://bit.ly/bbNuQL

[2010-09-18] - 22:37:44 - @weldpond Static analysis *should* find flaws in ESAPI if they're there, right? Even without an app?

[2010-09-18] - 22:37:44 - @WeldPond How about sending us all the non-datatflow related issues in ESAPI?

[2010-09-18] - 22:37:44 - @jeremiahg Actually, we could probably design an encoded string that ESAPI would properly canonicalize and escape.

[2010-09-18] - 22:37:44 - @jeremiahg Irrelevant. Good enough to make attackers move is at least the OWASP T10.

[2010-09-18] - 22:37:44 - @DinisCruz This was never a security issue in ESAPI. Ever. Read the article.

[2010-09-18] - 22:37:44 - RT @_mwc: Want to follow OWASP news feed on twitter? Just follow @OWASP_feed. Been running for a few days now and is working very well!

[2010-07-27] - 07:12:02 - Aspect released free BlackHat tool today - JavaSnoop revolutionizes client pentesting! http://www.aspectsecurity.com/tools/javasnoop

[2010-06-12] - 18:04:31 - @jeremiahg @qobaiashi esapi HAS a waf filter, not IS a waf

[2010-06-04] - 07:56:04 - @jeremiahg OWASP has a cloud project that's making progress. Why hurl stones? http://tinyurl.com/owaspcloud

[2010-06-03] - 08:44:18 - owasp over the years has honed their ability to criticize other peoples code. ESAPI then becomes the answer to do it right. Brian Chess

[2010-05-27] - 02:24:50 - @jeremiahg Hey, what if ESAPI could be a floor wax and dessert topping too?

[2010-05-22] - 02:16:29 - @jeremiahg That's the whole purpose of ESAPI's SecurityConfiguration class - your enterprise security policy configured, tracked, managed

[2010-04-27] - 09:43:38 - @krvw yep - that doesn't even include multiple or nested encoding techniques. ESAPI canonicalize() is your friend.

[2010-04-23] - 10:30:07 - Free OWASP ESAPI WebEx Tonite at 6:00 PM EST - http://tinyurl.com/esapi1 (password: 3sAPIme)

[2010-04-22] - 23:17:17 - @krvw On my way to OWASP NOVA Chapter to talk about ESAPI in practice and architecture. Come ask tough questions!

[2010-04-18] - 13:43:43 - rt @OWASP_podcast: Releasing podcast 67,68,69,70 and 71 on Monday to celebrate the OWASP Top Ten release. It's official, Monday is the day.

[2010-04-14] - 22:01:53 - @securityninja @kuzushi ESAPI is fundamental security controls...primatives. Frameworks can use them but having them separate is important.

[2010-04-14] - 22:01:53 - ESAPI 2.0 rc6 is now live! http://code.google.com/p/owasp-esapi-java/

[2010-04-14] - 22:01:53 - Just wrote a tool to autogen stubs for all the missing code/libraries in a Java project. Big help in setting up static analysis.

[2010-03-02] - 03:50:38 - RT @jsreno: discussed web application security and OWASP ESAPI on the Redspin Blog http://wp.me/pymfm-ac

[2010-02-25] - 08:41:08 - RT @jeremiahg: Hilarious! Mentions OWASP, PCI, pwnz0red, PHP, SLAs, etc. Hitler Cloud Computing Security [video] http://bit.ly/97sUKe

[2010-02-19] - 03:57:58 - @jeremiahg The OWASP Contract is about transparency, understanding, and responsibility. Adhesion contracts don't work.

[2010-02-18] - 19:53:17 - RT @jeremiahg: The OWASP Security Ecosystem Project http://bit.ly/9bUNQr

[2010-02-18] - 04:28:50 - Weaknesses are academically interesting, *Risks* are important to business. That's why the OWASP T10 changed. http://bit.ly/35xVOk

[2010-02-10] - 11:41:50 - @DinisCruz We are planning to do the development of the Rugged approach at OWASP

[2010-02-01] - 22:01:11 - Lots http://bit.ly/cSwELt. RT @julianor: is OWASP ESAPI used in any real project?

[2010-02-01] - 22:01:11 - RT @krvw: Just renewed my OWASP membership for 2010. Did you? It's a great way of giving back to an org that gives away tons of great work.

[2010-02-01] - 01:35:15 - ESAPI 1.4.4 (for Java 1.4) is live https://lists.owasp.org/pipermail/esapi-dev/2010-January/000512.html

[2010-01-25] - 09:52:32 - RT @carne: #esapi for javascript 0.1.3 Released - http://code.google.com/p/owasp-esapi-js/

[2010-01-25] - 09:52:32 - RT @ddossot: The Moderated AppSec Feed from the OWASP Foundation is one of my most valuable RSS feeds.

[2010-01-18] - 20:56:38 - @JosephDawson You might find what you want in the OWASP Developer's Guide http://bit.ly/6N4KVD

[2010-01-18] - 09:06:08 - Aspect is pleased that Gartner Group is recommending the Secure Software Contract Annex we created for OWASP http://bit.ly/E194X

[2010-01-18] - 09:06:08 - RT @owasp_esapi: ESAPI 1.4.2 to be released later today (for organizations stuck on Java 1.4)

[2010-01-17] - 04:57:50 - RT @dcuthbert: So it seems my OWASP for Charities project has legs. This is fantastic. More to follow, good things will come out of this.

[2010-01-12] - 08:11:05 - @jeremiahg @rgaucher Would be great to see OWASP ASVS mapped too

[2010-01-10] - 11:36:26 - @richardveryard I'm Jeff Williams from OWASP. I'd like to talk w/you on why T10 is important part of OWASP arsenal - jeff.williams@owasp.org

[2010-01-07] - 20:28:23 - @richardveryard I'm trying to catch up here - have you written down your objections about OWASP?

[2010-01-05] - 04:11:55 - @jeremiahg Java EE still has NO support for escaping and lots of other stuff. You need something like ESAPI to make a secure app possible.

[2009-11-15] - 18:39:28 - @nate_mcfeters Why would it be slow? Are you still in 1998? In app waf means one trip through stack.

[2009-11-13] - 06:04:00 - Just selected as one of the 2009 JavaOne Rockstars for my XSS Proofing talk! http://bit.ly/cpmkE

[2009-11-13] - 06:04:00 - @arj Paper, slides, and code from the Enterprise Java Rootkits talk at BlackHat. Would love your feedback. http://bit.ly/3CogJA

[2009-11-13] - 06:04:00 - New OWASP AppSec Challenge released! Solve this JavaScript puzzler and win a free ticket to next year's conference. http://bit.ly/wNcqQ

[2009-11-13] - 06:04:00 - Aspect donates ESAPI WAF to OWASP - a free and open in applicationweb application firewall. http://bit.ly/CDjfD

[2009-11-13] - 06:04:00 - OWASP ESAPI Project has just released a free and open security API for Python. http://bit.ly/PRNgH

[2009-11-13] - 06:04:00 - THANK YOU OWASP Chapter and Project Leaders! Check out the plan to help fund your attendance at OWASP AppSec Conferences http://bit.ly/XkwlQ

[2009-11-13] - 06:04:00 - RT @jeremiahg: RT @securityninja: Output Validation using the OWASP ESAPI http://bit.ly/38KXPi

[2009-11-13] - 06:04:00 - RT @QuestOnSecurity: If you thought OWASP ESAPI was a good idea then you'll also find OWASP AppSensor interesting - http://bit.ly/hqZJW

[2009-11-13] - 06:04:00 - @miscsecurity I'm presenting on the ESAPI project and also about malicious developers and enterprise Java rootkits


Précédents / Suivants


S'abonner au fil RSS global de la revue Twitter

Menu > Elements de la revue Twitter : - l'ensemble [tous] - par mots clé [tous] - par compte [tous] - le tagwall [voir]




SecuToolBox :

Mini-Tagwall des articles publiés sur SecuObs :

Mini-Tagwall de l'annuaire video :

Mini-Tagwall des articles de la revue de presse :

Mini-Tagwall des Tweets de la revue Twitter :