War Room

Go Back   WarriorForum - Internet Marketing Forums > Warrior Support Forums > Programming Talk

Featured Warrior Special Offer...
"Members Of The *War Room* Discover Secrets To Immediate Success!"
Reply
 
LinkBack Thread Tools
Old 09-08-2009, 06:23 PM   #1
Advanced Warrior
War Room Member
 
mywebwork's Avatar
 
Join Date: Sep 2008
Location: Honolulu, Hawaii, USA (Currently in Montreal Canada)
Posts: 814
Blog Entries: 1
Thanks: 138
Thanked 217 Times in 146 Posts
Social Networking View Member's Twitter Profile 
Contact Info
Send a message via Skype™ to mywebwork
Default Suggestions for "Torture Testing" a Membership site

Hi

A friend of mine has asked me to try and "attack" his membership site for the purposes of seeing if I can do it and thus expose any security holes he may have overlooked.

I'm a developer and programmer but not a hacker! I have written code to prevent common attacks like SQL injections and I have worked with encrypted data but I really don't know where to begin with this. But it is an interesting challenge, especially as I have a site of my own that I'd like to test as well!

I don't want to delve to deeply into the "dark" side of the web and the last thing I want to do is have this post become a repository of hackers tricks! What I was wondering was if anyone had any suggestions as to any standard tests that I could perform to see if he has all the basics covered?

Thanks

Bill
mywebwork is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 09-09-2009, 06:57 AM   #2
Advanced Warrior
War Room Member
 
mywebwork's Avatar
 
Join Date: Sep 2008
Location: Honolulu, Hawaii, USA (Currently in Montreal Canada)
Posts: 814
Blog Entries: 1
Thanks: 138
Thanked 217 Times in 146 Posts
Social Networking View Member's Twitter Profile 
Contact Info
Send a message via Skype™ to mywebwork
Default Re: Suggestions for "Torture Testing" a Membership site

I believe that this is the first time I answered my own question - got a link from someone on Blellow that is an example of what I was looking for.

SQL Injection – How to Test Web Applications against SQL Injection Attacks

Actually this whole website is devoted to testing and evaluating software, so there are a lot of good resources for security testing here (although it's not exclusively for web sites & applications, it also covers desktop and server software).

Another good article I found here was this:

An approach for Security Testing of Web Applications

Again, if anyone else has a similar resource I'd love to know about it - anything that can help find (and eliminate) vunerabilities on our sites is a valuable resourse beyond this one project.

Thanks

Bill
mywebwork is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 09-10-2009, 10:15 PM   #3
Lisa Dozois
War Room Member
 
lisag's Avatar
 
Join Date: Jan 2006
Location: Florida, USA.
Posts: 316
Thanks: 39
Thanked 108 Times in 44 Posts
Default Re: Suggestions for "Torture Testing" a Membership site

WDVL: Securing PHP Web Applications - Introduction to Exploit Testing

-- Lisa G
>> Best Under $5 Christmas Treat For Kids http://hohohomail.com
#1 Rated Copywriter On RentACoder
www.lisa.myfreelanceportfolio.com
Check out my WSO: http://tinyurl.com/lvkjq9
lisag is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
The Following User Says Thank You to lisag For This Useful Post:
Reply

  WarriorForum - Internet Marketing Forums > Warrior Support Forums > Programming Talk

Tags
hackersafe, membership, site, suggestions, torture testing

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off



All times are GMT -6. The time now is 05:59 AM.