| To: | <pen-test@securityfocus.com> |
|---|---|
| Subject: | New Infocus article on SecurityFocus: Testing Fault Injection in Local Applications |
| From: | "Erin Carroll" <amoeba@amoebazone.com> |
| Date: | Tue, 23 Jan 2007 17:58:36 -0800 |
| Delivered-to: | sp-com-lists@consult.net |
| Delivered-to: | pentest-list2@consult.net |
| Delivered-to: | mailing list pen-test@securityfocus.com |
| Delivered-to: | moderator for pen-test@securityfocus.com |
| List-help: | <mailto:pen-test-help@securityfocus.com> |
| List-id: | <pen-test.list-id.securityfocus.com> |
| List-post: | <mailto:pen-test@securityfocus.com> |
| List-subscribe: | <mailto:pen-test-subscribe@securityfocus.com> |
| List-unsubscribe: | <mailto:pen-test-unsubscribe@securityfocus.com> |
| Mailing-list: | contact pen-test-help@securityfocus.com; run by ezmlm |
| Resent-date: | Tue, 23 Jan 2007 17:55:28 -0700 (MST) |
| Resent-from: | pen-test-return-1078483461@securityfocus.com |
| Resent-message-id: | <20070124005528.799CE2374CD@outgoing3.securityfocus.com> |
| Resent-sender: | listbounce@securityfocus.com |
| Sender: | listbounce@securityfocus.com |
| Thread-index: | Acc/WyhO9pnTXoE3Qrqh0cXNESEdmw== |
The following Infocus technical article was published on SecurityFocus today: Testing Fault Injection in Local Applications By Chris Wysopal, Lucas Nelson, Dino Dai Zovi, and Elfriede Dustin published 2007-01-23 This article is a book excerpt that looks at the approach and techniques used to test the security of local applications. It describes local resources and interprocess communication, how to enumerate the local resources an application depends on, and then discusses methods of testing several of those types of resources. It also describes how to test ActiveX objects, command-line programs, and applications' use of local files and shared memory. http://www.securityfocus.com/infocus/1886 -- Erin Carroll Moderator SecurityFocus pen-test list "Do Not Taunt Happy-Fun Ball" ------------------------------------------------------------------------ This List Sponsored by: Cenzic Need to secure your web apps? Cenzic Hailstorm finds vulnerabilities fast. Click the link to buy it, try it or download Hailstorm for FREE. http://www.cenzic.com/products_services/download_hailstorm.php?camp=701600000008bOW ------------------------------------------------------------------------ |
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: Wikto and googling, David Jacoby |
|---|---|
| Next by Date: | RE: Wikto and googling, Steve Armstrong |
| Previous by Thread: | [New Tool]PReplay - A pcap traffic replay tool, crazy frog crazy frog |
| Next by Thread: | PPPOE password sniffing, Nikolaj |
| Indexes: | [Date] [Thread] [Top] [All Lists] |