Monday, October 22, 2007

On Biz Logic Flaws / "Semantic Hacking"

Fun reading from WhiteHat: a WP on business logic flaws [PDF]

Yes, I keep insisting that it is the future, but some folks counter that it is in fact THE PRESENT ...

2 comments:

Anonymous said...

Maybe some people have been having more holistic view of security issues on web applications, as to me this has been present for years now. Maybe it is a future as well in sense that many clients are not really checking these so well due to all the talk about XSS etc. But definitely nothing new under the sun.

Anton Chuvakin said...

Yes, indeed, it is not new in the sense that somebody smart though about it before. But the focus of the rest of the worlds wasn't (and - probably isn't) there yet...

Dr Anton Chuvakin