Web Site Security - Links

SANS - The Trusted Source for Computer Security, Training, Certification and Research. Read these computer security white papers in the SANS Reading Room

Web Application Security Consortium - The Web Application Security Consortium (WASC) is an international group of experts, industry practitioners, and organizational representatives who produce open source and widely agreed upon best-practice security standards for the World Wide Web.

OWASP - The Open Web Application Security Project is dedicated to finding and fighting the causes of insecure software. Their open source projects and local chapters produce free, unbiased, open-source documentation, tools, and standards. The OWASP community also facilitates conferences, local chapters, articles, papers, and message forums. The OWASP Foundation, a not-for-profit charitable organization, ensures the ongoing availability and support for our work. Participation in OWASP is free and open to all, as are all the materials.

Articles on Website Security

Cross Site Scripting - XSS - The Underestimated Exploit
Microsoft UK Events Website Hacked
Web Applications: What are they? What of them?
The JavaScript Engine of Acunetix WVS
Payment Card Industry Data Security Standard (PCI) Compliance
Web hacking: An underestimated threat
Web Application Security
Web Server Security and Database Server Security
The True Nature of Web Application Security: The Role and Function of Black Box Scanners
Ajax security: Are AJAX applications vulnerable to hack attacks?
SQL Injection: What is it?
Web Security Scanning
How to check for SQL injection vulnerabilities
Cross Site Scripting Attack
CRLF Injection Attack
Directory Traversal Attacks
Authentication Hacking Attacks
Google hacking
PHP / SQL Security - Part 1
PHP / SQL Security - Part 2
PHP / SQL Security - Part 3
PHP / SQL Security - Part 4
PHP / SQL Security - Part 5
PHP / SQL Security - Part 6

White Papers on Web security

The Payment Card Industry Compliance - Securing both Merchant and Customer data.
Web Services - The Technology and its Security Concerns
PHP and SQL Security by Andrew J. Bennieston
Are AJAX Applications Vulnerable to Hack Attacks? The importance of Securing AJAX Web Applications
Auditing Your Web Site Security with Acunetix Web Vulnerability Scanner
The Importance of Web Application Scanning