Writing Secure ASP.NET Session - Dutch

Posted Tuesday, April 27, 2004 9:55 PM by CumpsD
It has been a long time since I posted something, but here I am again. It's a very busy time right now, some exams, loads of school tasks, some websites, etc..

And also, a talk I had to prepare for class. One that I'm going to share with you.

I'll have to dissapoint non-Dutch readers though, the slides are writting in Dutch, as it was a local session. You could always look at the code though.

The subject was 'Writing Secure ASP.NET'. Covering :
  • Cross-site Scripting
  • SQL Injection
  • Hashing passwords
  • IOPermissions by default
  • Unsafe DSN (DSN with password included)
The first three demo's code should be obvious. Regarding IOPermissions I showed a file browser that could browse trough the system in default ASP.NET installation. And for the Unsafe DSN, I listed system DSNs, or used a demo DSN, showed the tables in it (MySQL only) and executed a query against it.

You can find all files here: SecureASPNET.ppt (227k) and Demo.zip (205k).

Filed under: ,

Comments

# re: Writing Secure ASP.NET Session - Dutch

Tuesday, April 27, 2004 4:11 PM by lore

Sweeeeet powerpoint presentation, i like the lizard a lot. If I could find his head, we can fix it! :D

I can't say a lot about the content, because I don't have any knowledge about it, but it seems to be interesting!

# re: Writing Secure ASP.NET Session - Dutch

Tuesday, April 27, 2004 4:15 PM by Dhoore

nice!!

# re: Writing Secure ASP.NET Session - Dutch

Tuesday, April 27, 2004 4:16 PM by bleyke

It was a very nice presentation, I learnt alot about secure coding :). I also took this picture (after a few tries)

# re: Writing Secure ASP.NET Session - Dutch

Wednesday, April 28, 2004 5:15 AM by Kelly

hey, sounds like I've missed something interesting.
But thanks for giving me an individual lesson :p

# re: Writing Secure ASP.NET Session - Dutch

Wednesday, April 28, 2004 12:48 PM by Bert

To bad I had to mis that presentation... :s

# re: Writing Secure ASP.NET Session - Dutch

Tuesday, July 20, 2004 5:09 PM by Robin

but i was there :p

i hope they learned not to use claroline anymore...