- Cross-protocol XSS with non-standard service ports
- Flash Cookie Forensics
- apache.org incident report for 8/28/2009
- Microsoft IIS 5/6 FTP 0Day released
- UK Parliament website hack exposes shoddy passwords
- Outsourcing and Top-Line Security Budget Justification
- Production-Safe Website Scanning Questionnaire
- Revealing Facebook Application XSS Holes
- Flaw In Sears Website Left Database Open To Attack
- Pwning Opera Unite with Inferno’s Eleven
Orginal Source:
http://jeremiahgrossman.blogspot.com/2009/09/best-of-application-security-friday-sep.html




