ALSO CALLED: XML Web Services Security and .NET Security DEFINITION:
Directory traversal is a form of HTTPexploit in which a hacker uses the software on a Web server to access data in a directory other than the server's root directory. If the attempt is successful, the hacker can view restricted
Definition continues below.
JOURNAL ARTICLE: Posted: 11 Jan 2008 | Published: 01 Jan 2008
SUMMARY:
In 10 years, information security as we know it may not exist. Rather than a separate product, it may simply be embedded into everything. Or Web services may upend traditional enterprise security.
SUMMARY:WebInspect for Application Developers enables application and web services developers to automate the discovery of security vulnerabilities as they build applications.
SUMMARY:WebInspect for Application Developers enables application and web services developers to automate the discovery of security vulnerabilities as they build applications access detailed steps for remediation of those vulnerabilities and deliver secure code.
WEB SERVICES SECURITY DEFINITION (continued):files or even execute commands on the server. Directory traversal attacks are commonly performed using Web browsers. Any server in which input data from Web browsers is not validated is vulnerable to this type of attack.
Although some educated guesswork is involved in finding paths to restricted files on a Web server, a skilled hacker can easily carry out this type of attack on an inadequately protected server by searching through the directory tree. The Web Services Security definition sponsored by SearchSecurity.com, powered by WhatIs.com an online computer dictionary
TechTarget provides enterprise IT professionals with the information they need to perform their jobs
- from developing strategy, to making cost-effective IT purchase decisions and managing their
organizations' IT projects - with its network of
technology-specific Web sites, events and magazines