SecurityReason.com - Our Reason is

Security

Register | Forget Password | Login
SecurityReason
WLB
Services
RSS
Corporate
Note

If you have found a vulnerability, please send to our SecurityAlert Database :
secalert()securityreason()com

Also if you have new ( 0-day ) exploit, please send to our ExploitAlert Archive :
exploit()securityreason()com

Security Audit : General information

Index:
0. General information
1. Schedule
2. Prices of services
3. Contact

   SecurityReason.com is one of the leaders of security solutions for web applications on the Polish market. Our long-standing experience in performing security testing has shown us that one of the most important issues in the Internet communication was the security level of information.

Aware of the today's importance of protecting data and information security, we offer a complex audit of the source code of websites based on the PHP (PHP Hypertext Preprocessor) technology. The performed security tests aim at protecting our customers from any attacks from the outside which would be able to threaten the information stored on the server, and consequently, also to public image of the company.

Our offer is directed mainly to people thinking long-term and understanding the need to develop the internet technologies. In our contacts with our customers we emphasize long-term collaboration, and each customer is treated individually. The security audit should be performed on each new network service, before making it available to its mass users. It is also especially recommended in case of attempts of breaking into to the network.

You will find more about our achievements in the section "SecurityReason Research", which includes bug reports of international applications, detected by SecurityReason. In order to maintain the highest level of our services, we constantly maintain active collaboration with foreign developers.

Our company offers three types of services which considerably improve the security of their network application.

Button  The internal security audit involves execution of complex tests on the source code of the application made available to us by the customer. The service is divided into two main phases. The first of them involves constructing a basic map of the service, and then putting it to fusion tests for several days. It allows efficient locating of many simple errors which are most often made. The second phase is conducted by the specially selected team of testers which analyses the source code, finding in in more complicated anomalies. In case of this option, the customer gets from us the most detailed list of detected errors, together with a proposal of possible solutions.

Button  The external security audit is simply a simulated attack on the customer's application. In the event of detecting any anomalies which allow a potential burglary, the customer is informed about it at once and provided with an exact record of the test. Unfortunately, this option is much less effective than the internal audit.

Button  The post-burglary analysis is offered to those customers who already know about an attempt of burglary into their web application. We offer a quick reaction and a deep analysis of all traces, and finally a detailed report from the activities performed as regards the attack, together with a list of gaps in the analyzed application which was used in it.


Alert

libc:fts_*() Multiple Denial of Service

Security Risk Medium- 2009-10-02

The fts functions are provided for traversing UNIX file hierarchies...

Apache RSS Apache Alert

» Apache 1.3.41 mod_proxy
   Integer overflow (code
   execution)

» Apache Tomcat 6.0.20 and
   5.5.28 unexpected file
   deletion in work
   directory

» Apache Tomcat 6.0.20 and
   5.5.28 insecure partial
   deploy after failed
   undeploy

» Apache Tomcat 6.0.20 and
   5.5.28 unexpected file
   deletion and/or
   alteration

PHP RSS PHP Alert

» PHP 5.2.12/5.3.1
   session.save_path
   safe_mode and
   open_basedir bypass

» PHP 5.2.12/5.3.1 Multiple
   Vulnerabilities

» PHP 5.2.11 libgd multiple
   vulnerabilities

» PHP 5.2.11 tempnam()
   safe_mode bypass

Copyright © SecurityReason.com. All Rights Reserved.