Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Web-App-Sec
[Top] [All Lists]

RE: as security pro's, how do you use the web now?

Subject: RE: as security pro's, how do you use the web now?
Date: Fri, 14 Jan 2005 11:29:37 -0500
I had a very similar experience with a web hosting site.  Subscribed and
then wan't able t manage it.  I figure I'm now spamming the globe or
worse.

Clark  

-----Original Message-----
From: Daniel [mailto:deeper@gmail.com] 
Sent: Thursday, January 13, 2005 7:05 AM
To: webappsec@securityfocus.com
Subject: as security pro's, how do you use the web now?

With more of my purchases being made on the web today, i'm always
concerned that the site I'm using is making use of decent security
standards.

Last night i was purchasing some art on line and when it came to the
payment section, the whole thing was iffy and didn't seem right. Even on
the most basic input field, there was no validation being performed (yes
i added a back tick, and even though some might find this wrong, i would
like to know that my banking details are being handled in accordance
with UK data protection laws)

I didn't go any further and decided to phone in my order via the phone. 

Does anyone else do this? 
I know that it opens up a whole can of worms regarding acceptable usage
of the site, and it would be interesting to see what other people think.



Daniel


<Prev in Thread] Current Thread [Next in Thread>