This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
User contributions
This user is currently blocked. The latest block log entry is provided below for reference:
- 15:09, 14 August 2013 KateHartmann (talk | contribs) blocked Jeffrey Walton (talk | contribs) with an expiration time of indefinite (account creation disabled, email disabled)
(newest | oldest) View (newer 50 | older 50) (20 | 50 | 100 | 250 | 500)
- 17:03, 24 February 2013 (diff | hist) . . (+69) . . Transport Layer Protection Cheat Sheet
- 16:59, 24 February 2013 (diff | hist) . . (-172) . . Transport Layer Protection Cheat Sheet (Updated "Rule: Only Support Strong Protocols." A lot has changed in 4 or 5 years, and its safe to kill-off SSLv3 completely and press the need to deprecate TLS 1.0.)
- 15:27, 24 February 2013 (diff | hist) . . (+367) . . m Transport Layer Protection Cheat Sheet (Added info on TLSv1.0 CBC Chaining attacks and Padding Oracle attacks; (2) specified 3-key 3DES; (3) added info on stream ciphers, explicitly omitted ARC4; (4) added preference for SHA2; (5) reversed MD5 (MD5 is still needed as PRF in TLS 1.0 and 1.1)
- 15:16, 24 February 2013 (diff | hist) . . (+20) . . Transport Layer Protection Cheat Sheet
- 15:10, 24 February 2013 (diff | hist) . . (+289) . . Transport Layer Protection Cheat Sheet ((1) Rearranged Protocols and Cipher Suites so Protocols proceeds Cipher Suites; (2) Added references to IANA reserved cipher suites; (3) added PKI to Always Provide All Certifcates)
- 16:00, 23 February 2013 (diff | hist) . . (+144) . . Transport Layer Protection Cheat Sheet
- 15:57, 23 February 2013 (diff | hist) . . (+849) . . Transport Layer Protection Cheat Sheet (Added "Rule - Always Provide All Needed Certificates")
- 11:48, 23 February 2013 (diff | hist) . . (+9) . . C-Based Toolchain Hardening
- 11:46, 23 February 2013 (diff | hist) . . (+59) . . C-Based Toolchain Hardening
- 11:35, 23 February 2013 (diff | hist) . . (+11) . . m C-Based Toolchain Hardening (Added NDK_DEBUG for Android)
- 04:22, 23 February 2013 (diff | hist) . . (+86) . . m Transport Layer Protection Cheat Sheet (Improved flow)
- 04:14, 23 February 2013 (diff | hist) . . (-17) . . m Transport Layer Protection Cheat Sheet (Improved flow)
- 04:09, 23 February 2013 (diff | hist) . . (-33) . . m Transport Layer Protection Cheat Sheet (Improved flow)
- 04:02, 23 February 2013 (diff | hist) . . (+7) . . Transport Layer Protection Cheat Sheet ("real time info" -> "real time status info")
- 03:58, 23 February 2013 (diff | hist) . . (+66) . . Transport Layer Protection Cheat Sheet
- 03:54, 23 February 2013 (diff | hist) . . (+64) . . Transport Layer Protection Cheat Sheet (Improved flow; added phishing attack)
- 03:50, 23 February 2013 (diff | hist) . . (+415) . . Transport Layer Protection Cheat Sheet (Kill off SSLv2 and SSLv3. Cited references.)
- 01:07, 23 February 2013 (diff | hist) . . (+1,372) . . Transport Layer Protection Cheat Sheet (Re-add "Certificate and Public Key Pinning" section. Accidentally whacked when updating RFC numbers.)
- 00:56, 23 February 2013 (diff | hist) . . (+169) . . m Testing for SSL-TLS (OWASP-CM-001) (Added info on Server Name Indication (SNI))
- 00:42, 23 February 2013 (diff | hist) . . (-1,372) . . m Transport Layer Protection Cheat Sheet (RFC 3280 -> RFC 5280. The latest PKIX for Internet profile is 5280.)
- 00:03, 23 February 2013 (diff | hist) . . (0) . . m Transport Layer Protection Cheat Sheet (Fixed wikilink to Certificate_and_Public_Key_Pinning)
- 00:01, 23 February 2013 (diff | hist) . . (+1,372) . . Transport Layer Protection Cheat Sheet (Added information on "Certificate and Public Key Pinning" as an additional control)
- 23:40, 22 February 2013 (diff | hist) . . (+33) . . Transport Layer Protection Cheat Sheet ("site.com" -> "example.com" (example.com is reserved for this purpose; site.com is a real site))
- 23:36, 22 February 2013 (diff | hist) . . (+52) . . m Transport Layer Protection Cheat Sheet ("more thorough" -> "enhanced". The CAs created the mess in the first place, and its still a game to them (charge more money and shed liability in 100+ CPSs))
- 23:26, 22 February 2013 (diff | hist) . . (+547) . . Transport Layer Protection Cheat Sheet ((1) "All Available" -> "Required"; (2) changed to example.com (its reserved for this purpose); (3) Added note on Subject CN and SANs; (4) Reversed wildcard recommendation)
- 23:12, 22 February 2013 (diff | hist) . . (+329) . . Transport Layer Protection Cheat Sheet (Added rule for "Disable Compression")
- 14:35, 21 February 2013 (diff | hist) . . (+329) . . C-Based Toolchain Hardening
- 14:12, 21 February 2013 (diff | hist) . . (+2) . . C-Based Toolchain Hardening
- 12:25, 21 February 2013 (diff | hist) . . (-50) . . C-Based Toolchain Hardening
- 12:16, 21 February 2013 (diff | hist) . . (+28) . . C-Based Toolchain Hardening
- 12:13, 21 February 2013 (diff | hist) . . (+9) . . C-Based Toolchain Hardening
- 11:48, 21 February 2013 (diff | hist) . . (+141) . . C-Based Toolchain Hardening
- 11:36, 21 February 2013 (diff | hist) . . (-113) . . C-Based Toolchain Hardening
- 11:33, 21 February 2013 (diff | hist) . . (+118) . . C-Based Toolchain Hardening
- 11:31, 21 February 2013 (diff | hist) . . (+619) . . C-Based Toolchain Hardening
- 11:19, 21 February 2013 (diff | hist) . . (+15) . . C-Based Toolchain Hardening
- 11:15, 21 February 2013 (diff | hist) . . (+522) . . C-Based Toolchain Hardening
- 10:45, 21 February 2013 (diff | hist) . . (+17) . . C-Based Toolchain Hardening
- 10:44, 21 February 2013 (diff | hist) . . (+9) . . C-Based Toolchain Hardening
- 10:42, 21 February 2013 (diff | hist) . . (-79) . . C-Based Toolchain Hardening
- 20:40, 20 February 2013 (diff | hist) . . (0) . . N File:Toolchan-hardening-3.png (current)
- 19:58, 20 February 2013 (diff | hist) . . (0) . . File:Toolchan-hardening-2.png (uploaded a new version of "File:Toolchan-hardening-2.png") (current)
- 19:52, 20 February 2013 (diff | hist) . . (-6) . . C-Based Toolchain Hardening
- 19:46, 20 February 2013 (diff | hist) . . (+266) . . C-Based Toolchain Hardening
- 19:40, 20 February 2013 (diff | hist) . . (+8) . . C-Based Toolchain Hardening
- 19:32, 20 February 2013 (diff | hist) . . (0) . . C-Based Toolchain Hardening
- 19:31, 20 February 2013 (diff | hist) . . (0) . . N File:Toolchan-hardening-2.png
- 18:43, 20 February 2013 (diff | hist) . . (-8) . . C-Based Toolchain Hardening
- 18:42, 20 February 2013 (diff | hist) . . (+30) . . C-Based Toolchain Hardening
- 18:41, 20 February 2013 (diff | hist) . . (+48) . . C-Based Toolchain Hardening
(newest | oldest) View (newer 50 | older 50) (20 | 50 | 100 | 250 | 500)