Hueniverse. The technical musings of Eran Hammer.
Hueniverse. The technical musings of Eran Hammer.
What’s new on Hueniverse.com: Check updates and related news right now. This site’s feed is stale or rarely updated (or it might be broken for a reason), but you may check related news or Hueniverse.com popular pages instead. It is generally safe for browsing, so you may click any item to proceed to the site.
Robin Sillem, William Ferguson This blog post explores performing cross site scripting attacks on your own machine, on some pre-made sample web apps. The focus of this post is on securing web apps, rather than the attacks themselves. It is part of an...
I extract items for the Wrap from my link blog, which you’re welcome to follow. To make sure you never miss an issue, subscribe to my weekly email briefing. Webinar Alert On Thursday I’ll present a webinar on communication to employees about the political...
Lately I’ve been on the road, giving talks about web application security. JSON Web Tokens (JWTs) are the new hotness, and I’ve been trying to demystify them and explain how they can be used securely. In the latest iteration of this talk, I give some...
TL;DR Many modern web applications use JSON Web Tokens (JWT), rather than the traditional session-based authentication. Quite a few challenges have been found with using server-side sessions in modern-day applications. In this post, we’ll identify those...
NB: This is the sixth post in a series of posts on web application security. Don’t put session IDs in the URL. Django explicitly does not support this because it’s just dangerous. Use SSL and secure cookies. Use HttpOnly cookies. Is it really that...
MiniWrites – A hub for your creative projects!
A hub for your creative projects!
SOCRATES is an international, refereed (peer-reviewed) and indexed scholarly hybrid open-access journal in Public Administration a...
– Business Owners Online Digital Marketing...
Pilly's first Black Owned Online Digital Billboard. The [PMO] Billboard has been design and inspired by the business owners in the...
The technical musings of Eran Hammer.
Introducing OAuth 2.0 | hueniverse
Two weeks ago, the IETF OAuth Working Group published the first draft of the OAuth 2.0 protocol. OAuth is a security protocol that enables users to grant third-party access to their web resources with...
its credentials to access its resources hosted on the server. As far as the server is concerned, the shared secret used by the client belongs to the client. The server doesn’t really care where it ca...
20 years
Domain age
N/A
Visit duration
510
Daily visitors
N/A
Bounce rate
N/A
Child safety
Excellent
Trust
Excellent
Privacy
59.1 %
India