Blog Detail
Application Security
http://michael-coates.blogspot.com
Application security trends and attack/defense techniques.
Recent Posts
Brazilian Voting Machine Attacked Via Radio Monitoring
I'd like to make one point before diving into the details. And this is the reason why I am posting this story. Attackers are very clever. If you are designing a critical system that will be exposed to large numbers of people or handle sensitive tra...
The OWASP Mission
Original document at owasp.orgOWASP AppSec DC 2009 ConferenceJeff Williams, OWASP Board ChairThe OWASP MissionFirst I’d like to introduce the OWASP Board (Tom, Dave, Dinis,Seba, and myself)The board runs the OWASP Foundation, the 501c3 nonprofit wh...
IE8 XSS Filter Bug
The register just ran an article (IE8 bug makes 'safe' sites unsafe) talking about a flaw in Internet Explorer 8's XSS filtering. I have researched the IE8 filter in the past and provided some of my thoughts on the matter.As the article correctly st...
Watch AppSecDC Live
Unable to make it to OWASP AppSec DC this week? Watch it live below.Follow the twitter stream at #AppSecDC-Michael Coates ...
Yet Another SSL/TLS Vulnerability Released
Another SSL/TLS vulnerability has been recently released. This weakness appears to affect applications which use client side certificates for user authentication. More specifically, the weakness lies in the renegotiation feature. For many people, ...
OWASP Application Security Conference - DC
I really don't have to try to convince anyone. This is more of a last call notice. The upcoming OWASP DC conference is going to be great! But in the event you've been a small dark box for the last 6 months, here is the info once again.ConferenceSche...

