Wednesday, August 6, 2014

We can have multiple level security in enterprise application
1. data level security with masking (enrypting data)
2. SSL/TLS

Another thing is how we organize how to store private keys

Advanced protection of Web applicationsagainst the following threats:
  • Web, HTTPS and XML attacks
  • SQL Injection
  • session hijacking
  • cross site scripting (XSS)
  • abuse of form fields
  • known worms
  • Zero Day worms
  • buffer overflow
  • cookie poisoning
  • Denial of Service
  • parameter tampering
  • brute force login
  • malicious code
  • directory traversal
  • attacks on Web servers and operating systems
  • scanning
  • command injection
  • illegal coding
  • identity theft
  • data theft
  • data disclosure
  • corporate espionage
  • phishing
data destruction

No comments:

Post a Comment