Cross-Site History Manipulation (XSHM)

2010-02-01 Thread Alex Roichman
in samples of their application by using a free download version of the product. Thanks, Alex Roichman Chief Architect and head of Research labs, Checkmarx Ltd. securityl...@checkmarx.com

Regular Expression Denial of Service

2009-09-11 Thread Alex Roichman
Checkmarx Research Lab presents a new attack vector on Web applications. By exploiting the Regular Expression Denial of Service (ReDoS) vulnerability an attacker can make a Web application unavailable to its intended users. ReDoS is commonly known as a “bug” in systems, but Alex Roichman and Adar