May 2, 2005

Stopping Automated Attack Tools

Stopping Automated Attack Tools - Whitepaper from NGS with a collection of techniques you can use in Web applications to break, confuse, or detect vulnerability scanners when they come to visit (PDF).

- From The Daily Grind

One Comment So Far ›

  1. A great way to do it is also to attack yourself. You then see both sides of the equation.

    We use ScanAlert, who regularly “audit” (read “attack using many vectors”) our various eCommerce outlets. This generates a report of potential vulnerabilities which they provide, but also provides us with our own data as a result of the attacks. Internally, we get how these attacks manifest themselves by .NET exception traps, validation traps etc. being audited. (eg. yesterday, I had a mailbox with over 1,000 audit events which had to be checked against the attack vectors)

    All systems okay!

Leave a Comment

XHTML: You can use these tags: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>

Media Corner

2

3

4

5

6

  • Gadget Corner

  • Entrecard

  • EntreDroppers

  • Linkage

  • Networking