Browse by Tags

All Tags » Input Validation » Secure Design (RSS)
Input Validation Isn’t For Wimps
There’s an axiom in the appsec community - “all input is evil”. Every piece of data sent by the user may be teeming with virulent host compromising attacks, and that you better validate ANY and ALL user-modifiable parameters or your computer will explode...

Posted by Alex | with no comments

Input versus Data, Validation versus Sanitization
Reading articles, browsing marketing materials, and listening to presentations about application security, you hear variations on a theme: "Input validation is absolutely critical to application security, and most application risks involve tainted input...

Posted by Alex | with no comments