Pages

Tuesday, September 30, 2014

Apple Releases OS X Bash/ShellShock Patch

0 comments
The official patches for the UNIX shell vulnerability have been released. You may see them listed under 'Software Update' or you may get system notifications alerting you to them. You can also grab them yourself here: ·              Mavericks v10.9.5+: http://support.apple.com/kb/DL1769 ·              Mountain Lion v10.8.5: http://support.apple.com/kb/DL1768 ·              Lion v10.7.5: http://support.apple.com/kb/DL1767 ...
Continue reading →
Wednesday, February 5, 2014

CSRF/XSRF Protection in ColdFusion 9

0 comments
Here's another little thing that's come across my desk and I hope my solution can be of some help to others. I was asked to provide a solution to protect a site from Cross Site Request Forgery (CSRF or XSRF) attacks.  Specifically, there were forms on the site that were considered at-risk for exploitation.  I won't get into great detail on what CSRF is, but basically it's an attack vector that attempts to exploit the trust that a website ...
Continue reading →

Labels