Are Secure Internet Transactions Really Secure? - - This paper describes how many small business claim to be offering a secure order form, when in fact, they really are not. The paper shows how the insecurity occurs, and offers a few solutions to the problem.
Cgisecurity.com - - This site is designed to help user to learn about what kinds of security risks exist and how to prevent them from happening.
CIAC: Unix NCSA httpd Vulnerability - - An advisory detailing a vulnerability that has been discovered in the NCSA WWW server software (httpd).
Client Side Trojan - - By clicking on maliciously formed HTML tags users can unknowingly perform undesirable actions.
Hacking Exposed: Web Applications - - Book that covers how to hack web applications, and how to secure against the attacks detailed. Author profiles, links to tools referenced in the book and reviews.
Northfell - - Article on website hacking covering footprinting, IP scanning and an example IIS hack. Also has computer security weblog and an overview of BS7799.
Web Spoofing - - Full text of a paper discussing an 'attack' that threatens both privacy and data integrity. Written by Edward W. Felten, Dirk Balfanz, Drew Dean, and Dan S. Wallach. Available in various formats including PDF and Postscript.
The WWW Security FAQ - - Includes securing your server, protecting confidential documents on your site, safe CGI programming, client security, and privacy.
Help build the largest human-edited
directory on the web.