Security fixes in new version of Joomla!

Wednesday, July 9th, 2008

The development team behind Joomla! has released version 1.5.4 of its content management system. This includes fixes for security problems, as well as numerous improvements and bug fixes. These include a patch for a problem with LDAP which allowed unauthorised access to Joomla! administration pages. The developers have also fixed ...

What you need to know about HTTP Verb Tampering

Wednesday, June 4th, 2008

Recently Arshan Dabirsiaghi, Director of Research of Aspect Security, published a white paper entitled “Bypassing URL Authentication and Authorization with HTTP Verb Tampering”. Initially there was a lot of confusion about what exactly was being explained or claimed. Including, is it real? Is it novel? Is it dangerous? What is ...

Three-Layer Encryption Method Awarded Patent

Thursday, May 15th, 2008

Eruces Data Security has secured a patent for its three-step encryption and key management scheme, which is designed to lock down data through its lifecycle. The security firm’s so-called Tricryption technology first encrypts the data itself with symmetric keys, and then encrypts the keys and stores them in a central key ...