projects.webappsec.org

Website:http://projects.webappsec.org
Upvotes received3
Downvotes received2
Karma:2 (upvotes-downvotes)



0 earned Badges

No badges were found



Definitions (100)

1

2 Thumbs up   1 Thumbs down

cookie


Small amount of data sent by the web server, to a web client, which can be stored and retrieved at a later time. Typically cookies are used to keep track of a user’s state as they traverse a web site. [..]
Source: projects.webappsec.org

2

1 Thumbs up   1 Thumbs down

sql injection


An attack technique used to exploit web sites by altering backend SQL statements through manipulating application input. See also “Parameter Tampering”, “Form Field Manipulation”.
Source: projects.webappsec.org

3

0 Thumbs up   0 Thumbs down

description


The Web Security Glossary is an alphabetical index of terms and terminology relating to web application security. The purpose of the Glossary is to clarify the language used within the community.
Source: projects.webappsec.org

4

0 Thumbs up   0 Thumbs down

project leader


Robert Auger (contact @ webappsec org)
Source: projects.webappsec.org

5

0 Thumbs up   0 Thumbs down

abuse of functionality


An attack technique that uses the features and functionality of a web site to consume, defraud, or circumvent the site’s access controls. See also “Denial of Service”.
Source: projects.webappsec.org

6

0 Thumbs up   0 Thumbs down

activex controls


A program, called a “control”, developed using ActiveX controls technologies. ActiveX controls controls can be downloaded and executed within technology-enabled Web browsers. ActiveX controls is a set [..]
Source: projects.webappsec.org

7

0 Thumbs up   0 Thumbs down

ajax


AJAX stands for Asynchronous JavaScript and XML. This browser based technology allows a website to perform additional resource requests without refreshing the user page by utilizing the XMLHttpRequest [..]
Source: projects.webappsec.org

8

0 Thumbs up   0 Thumbs down

anti-automation


Security measure that prevents automated programs from exercising web site functionality by administering the Turing Test to a user, which only a human could pass. See also “Visual Verification”.
Source: projects.webappsec.org

9

0 Thumbs up   0 Thumbs down

application server


A software server, normally using HTTP, which has the ability to execute dynamic web applications. Also known a middleware, this piece of software is normally installed on or near the web server where [..]
Source: projects.webappsec.org

10

0 Thumbs up   0 Thumbs down

attack


A well-defined set of actions that, if successful, would result in either damage to an asset, or undesirable operation
Source: projects.webappsec.org


To view all 100 definitions, please sign in.