Files ≈ Packet Storm Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers http://packetstormsecurity.org/ en-us Mon, 28 May 2012 13:17:17 GMT Packet Storm 144400 http://packetstormsecurity.org/ http://www.google-analytics.com/__utm.gif?utmwv=1.3&utmn=1014902668&utmcs=ISO-8859-1&utmsr=31337x31337&utmsc=32-bit&utmul=en-us&utmje=0&utmfl=-&utmcn=1&utmdt=Files%u2248%20Packet%20Storm&utmhn=packetstormsecurity.org&utmr=-&utmp=%2Fpapers%2Fgeneral%2FA_Modular_Approach_to_Data_Validation_v1.0.pdf%2F&utmac=UA-18885198-1&utmcc=__utma%3D32867617.1014902668.1338211037.1338211037.1338211037.1%3B%2B__utmz%3D32867617.1338211037.1.1.utmccn%3D(direct)%7Cutmcsr%3D(direct)%7Cutmcmd%3D(none) A_Modular_Approach_to_Data_Validation_v1.0.pdf http://packetstormsecurity.org/files/45414/A_Modular_Approach_to_Data_Validation_v1.0.pdf http://packetstormsecurity.org/files/45414/A_Modular_Approach_to_Data_Validation_v1.0.pdf http://packetstormsecurity.org/files/45414/A_Modular_Approach_to_Data_Validation_v1.0.pdf.html Wed, 12 Apr 2006 18:59:25 GMT This paper presents a modular approach to performing thorough data validation in modern web applications so that the benefits of modular component based design; extensibility, portability and re-use can be released. The paper begins with an explanation of the vulnerabilities introduced through poor validation and then goes on to discuss the merits of a number of common data validation methodologies. A modular approach is introduced together with practical examples of how to implement such a scheme in a web application. It also provides information on common attack vectors, principles of validation, a modular solution and implementation of that solution.