White Papers on Security Related Topics
Here you can find papers containing results of our reseach on security issues as well as advice for secure programming.
Writing Fast and Secure Code in C
by Sebastian Schinzel
This paper deals with the special vulnerability for buffer overflows in C, and how a developer can harden his code against this and other vulnerabilities.
Web Application Vulnerability Scanners - a Benchmark
by Andreas Wiegenstein, Frederik Weidemann, Sebastian Schinzel, Dr. Markus Schumacher
This paper deals with the question how efficiently and reliably black box scanners can find vulnerabilities in web applications.
The Cross Site Scripting Threat
by Andreas Wiegenstein, Dr. Markus Schumacher, Xu Jia, Frederik Weidemann
Detailed (technical) discussion of Cross Site Scripting vulnerabilities and their damage potential.
The impact of Cross Site Scripting on your business
by Andreas Wiegenstein
High-level overview of the business risks related to Cross Site Scripting vulnerabilities.
Input validation is no silver bullet against hacker attacks
by Andreas Wiegenstein, Frederik Weidemann
A discussion of validation best practices that counter input-based attacks against applications.