At the 2nd Collegiate Cyber Defense Competition student teams are presented with a pre-configured systems of a fictitious company that they are tasked to operate. The evil red team with the help of Casaba will attempt to vandalize and break into this network. The student teams need to defend against the attacks of this red team.
Archive for March, 2009
Casaba helps red team operations at the 2nd Collegiate Cyber Defense Competition
March 28th, 2009 by Chris WeberEric Lawrence introduces Watcher tool at MIX09 Conference
March 21st, 2009 by Chris WeberI'm happy to say IE8 Security Program Manager and Fiddler author Eric Lawrence announced our Watcher tool at MIX09 today. Check out his talk at http://videos.visitmix.com/MIX09/T54F it's an eye opener for Web developers – introducing us to the new features of IE8 while also covering state-of-the-art secure development practices for today's Web applications.
Unfortunately CodePlex went down today, even with Microsoft's new release of !exploitable at CanSecWest. Anyhow we're working hard to to add new checks to Watcher and reduce false positives in existing ones. So please grab Watcher from Codeplex and send us any feedback you want.
Exploiting Unicode-enabled Software at CanSecWest
March 19th, 2009 by Chris WeberChris Weber speaks on “Exploiting Unicode-enabled Software” at CanSecWest.
Slides: Exploiting Unicode-enabled Software at CanSecWest (PDF)
Watcher: Web security testing tool and passive vulnerability scanner
March 17th, 2009 by Chris WeberCasaba releases Watcher for web-application security testing and compliance auditing. Watcher is open source on CodePlex.
Watcher security tool for web applications
March 12th, 2009 by Chris WeberWatcher is being released under an Open Source license. With over 30 checks in its first release, it helps you find issues in your web-apps fast and effortlessly. Watcher is a Fiddler plugin that passively audits a web application for a variety of security issues. It acts as an assistant to the developer, tester, or pen-tester, by quickly identifying issues that commonly lead to security problems in web apps. Integrate it into your test passes to achieve more coverage of security testing goals.
Go get Watcher.
Exploiting Unicode-enabled Software at SOURCE Boston
March 11th, 2009 by Chris WeberChris Weber speaks on “Exploiting Unicode-enabled Software” at SOURCE Boston Conference.



