XML External Entity (XXE) Attacks — Web-based Application Security, Part 5

XML External Entity (XXE) attacks are a form of injection attack that target weak XML parsers with the goal of exposing confidential information that should typically not be accessible. Learn how they work and how to protect against them.
The post XML … Continue reading XML External Entity (XXE) Attacks — Web-based Application Security, Part 5

SQL Injection Attacks (SQLi) — Web-based Application Security, Part 4

SQL Injection attacks are accomplished via insertion of untrusted input in a valid command or query of a vulnerable SQL-driven website or database, which then maliciously alters the execution of that program. SQL Injection attacks are simple to execute… Continue reading SQL Injection Attacks (SQLi) — Web-based Application Security, Part 4

Top 3 Enterprise SaaS Data Protection Trends

Cloud computing has come of age, both in terms of adoption and evolution. In order to get more insight into cloud security and data protection trends, ESG surveyed 370 IT professionals responsible for data protection for their organization. Here are th… Continue reading Top 3 Enterprise SaaS Data Protection Trends