Home Depot Website Hack

Even very large organizations with deep IT budgets can be the victim of a web application attack. Case in point, Home Depot's website. This article discusses malicious javascript found on Home Depot's e-commerce site.

Following the Trail of Web-based Malware

This article illustrates a typical threat scenario from start to finish. The goal is to demonstrate how hackers use a combination of tactics to compromise systems.

Affiliate Marketing Scam

This article discusses a common method used by scammers to commit fraud against ecommerce sites by taking advantage of their affiliate marketing programs.

Mitigating the Apache Range Header DoS Vulnerability

A new zero-day Apache DoS vulnerability has been reported that affects most default installations of Apache 1.3/2.x. This article discusses several mitigation techniques.

Webapp Scanner Review: Acunetix Versus Netsparker

The focus of this article is to provide a comparison of Acunetix WVS and Mavituna Netsparker webapp scanners in terms of accuracy, features, speed, and usability.

Profiling the Use of Javascript in a Driveby Download Attack

In this article I will detail how the javascript works in its attempt to download and install malware on unsuspecting visitors’ machines.