Breach Security Facilitates Community Testing of ModSecurity Core Rule Set with Launch of Demonstration Testing Page
|
|
|
| Posted
:
Mon, 09 Nov 2009 13:17:07 GMT |
| Author
:
Breach Security, Inc.
|
| Category
:
Press Release |
| News Alerts by
Email ( click
here ) |
| Press Release
News |
Home
|
|
|
|
CARLSBAD, Calif. - (Business Wire) Breach Security, Inc., the leader in web application integrity, security and PCI compliance, today announced it is advancing its ModSecurity product by facilitating unprecedented community collaboration and independent testing of the OWASP ModSecurity Core Rule Set (CRS) Project data by users. ModSecurity is a web application firewall engine that requires rules to operate most effectively. The CRS is based on generic rules that provide protection from zero-day and unknown vulnerabilities often found in web applications, which are typically custom-coded and difficult to secure. The open source ModSecurity CRS is provided free to the public and has recently become an official OWASP Project with Breach Security Labs as the sponsor. As with any signature-based security application, constant testing and updates are essential. To help facilitate easier community testing of the CRS, Breach Security has released a demonstration testing page at http://www.modsecurity.org/demo/modsecurity-demo.html. This page will allow users to send attack data through a live ModSecurity/CRS installation in order to identify any evasion issues. If a user identifies an issue, they can notify Breach Security personnel by either submitting a bug report ticket or by sending an email to the OWASP ModSecurity CRS mail-list. “Breach Security is in a unique position in the web application firewall industry,” said Ryan Barnett, director of application security research for Breach Security, ModSecurity community manager and OWASP ModSecurity Core Rule Set project leader. “Having an open source product such as ModSecurity in our portfolio allows us to expose our security rules to the public for quality assurance and testing purposes in ways that other security vendors cannot. We want to leverage the global pool of outstanding web application security experts to help test ModSecurity to make it a better tool for the community at large.” Benefits of providing the demonstration testing page include: - The Core Rule Set will be tested by pen-testing specialists who are experts in breaking into web applications and evading security filtering devices.
- Breach Security is lowering the barrier for testing by not requiring community testers to install the software themselves.
- Breach Security is expediting the identification and reporting steps, which shorten the fix cycle.
- Signature improvements will be leveraged back into the entire Breach Security product line.
About Breach Security Breach Security, Inc. is the leading provider of real-time, continuous web application integrity, security and compliance that protects sensitive web-based information. Breach Security’s products protect web applications from hacking attacks and data leakage, and ensure applications operate as intended. The company’s products are trusted by thousands of organizations around the world, including leaders in finance, healthcare, ecommerce, travel and government. For more information, please visit www.breach.com. Schwartz Communications Jill Reed or Clinton Karr, +1-415-512-0770 breachsecurity@schwartz-pr.com
|

Copyright © 2008
Business Wire. All rights reserved.
|
|
|
|
|
Related
News
Clearwire Announces Pricing of Additional $920 Million of 12 Percent Senior Secured Notes Due 2015, Expanding Note Facility to $2.78 Billion KIRKLAND, Wash. -
Clearwire Corporation (NASDAQ: CLWR) today announced that Clearwire
Escrow Corporation, an unrestricted subsidiary of Clearwire
Communications LLC, has priced a supplemental offering of an additional
$920,000,000 aggregate principal amount of 12% senior secured notes due
Commencement of CO2 Sequestration ECBM Pilot Project on an enlarged operations area
VANCOUVER, Nov. 24 - Petromin Resources Ltd. ("Petromin") (TSX.V: PTR) is pleased to announce that China United Coalbed Methane Corp., Ltd. ("CUCBM"), has initiated well operations at Deep Un-mineable Coal CO2 Seques...
Warner Bros. Pictures Presents INVICTUS -
Warner Bros. Pictures:
WHAT:
Frontier Financial Corporation Adopts Reverse Stock Split Expected to Maintain Nasdaq Listing EVERETT, WA -- 11/24/09 --
As previously announced, Frontier Financial
Corporation (NASDAQ: FTBK) received notice from the Nasdaq Stock Market on
September 15, 2009, stating that the minimum bid price of the Corporation's
common stock was below $1...
Paying Tribute to Boxer Francisco 'Paco' Rodriguez
PHILADELPHIA, Nov. 24 /PRNewswire-USNewswire/ -- On Friday, November 20, junior featherweight boxer Francisco "Paco" Rodriguez received a fatal blow to the head during a title bout in Philadelphia. He was rushed to Hahnemann Hospital, and after all efforts to save his life we...
Transax International Reports Third Quarter Results MIAMI, FL -- 11/24/09 --
Transax International Limited (Transax) (OTCBB: TNSX), a network solutions company for healthcare providers and health
insurance companies, today reported financial results for the first nine
months of 2009 and third quart..
Photo Safari of Yosemite National Park Lets Amateurs Capture Stunning Images
Pat Althizer's Yosemite Photo Safaris are helping amateur shutterbugs come away with stunning images of the nation park by putting them "In the right places at the right times."/I/P
PYosemite, CA (Vocus) November 24, 2009 -- With the Christmas shopping season officially here, ...
|
|
|
|
|
|
|
|
|