As I know that most of you use ModSecurity for virtual patching of web vulnerabilities, I wanted to pass this on to you all.
Does your organization use virtual patching? If so, please fill out the "OWASP Web Application Virtual Patching Survey" http://svy.mk/y7y2FE<http://www.linkedin.com/redirect?url=http%3A%2F%2Fsvy%2Emk%2Fy7y2FE&urlhash=LlFj&_t=tracking_anet> It is only 10 questions and that data will help us to develop both the Best Practices and Cheat Sheet documents. You could also win a free spot in the OWASP AppSecDC Virtual Patching Workshop -https://www.owasp.org/index.php/OWASP_AppSec_DC_2012/Training/Virtual_Patching_Workshop<http://www.linkedin.com/redirect?url=https%3A%2F%2Fwww%2Eowasp%2Eorg%2Findex%2Ephp%2FOWASP_AppSec_DC_2012%2FTraining%2FVirtual_Patching_Workshop&urlhash=kNRz&_t=tracking_anet> -- Ryan Barnett Trustwave SpiderLabs ModSecurity Project Leader OWASP ModSecurity CRS Project Leader ________________________________ This transmission may contain information that is privileged, confidential, and/or exempt from disclosure under applicable law. If you are not the intended recipient, you are hereby notified that any disclosure, copying, distribution, or use of the information contained herein (including any reliance thereon) is STRICTLY PROHIBITED. If you received this transmission in error, please immediately contact the sender and destroy the material in its entirety, whether in electronic or hard copy format. _______________________________________________ Owasp-modsecurity-core-rule-set mailing list Owasp-modsecurity-core-rule-set@lists.owasp.org https://lists.owasp.org/mailman/listinfo/owasp-modsecurity-core-rule-set