Fingerprinting is an age old concept and one that adds great value to assessment methodologies. There are several tools available for fingerprinting operating systems (nmap), Web servers (httprint), devices, etc. Each one of these tools uses a different method – inspecting the TCP stack, ICMP responses, HTTP responses. With this evolution of Web 2.0 applications that use Ajax extensively, it is important to fingerprint Ajax tools, framework or library used by a particular web site or a page. This paper describes the method of doing Ajax fingerprinting with a simple prototype serving as an example.
Read the rest of this entry »
To combat these new threats one needs to look at different strategies as well. In this paper we shall look at different approaches and tools to improve security posture at both, the server as well as browser ends. Listed below are the key learning objectives:
• The need for Ajax fingerprinting and content filtering.
• The concept of Ajax fingerprinting and its implementation in the browser using XHR.
• Processing Ajax fingerprints on the Web server.
• Implementation using ModSecurity for Apache
• Strengthening browser security using HTTP response content filtering of untrusted information directed at the browser in the form of RSS feeds or blogs.
• Web application firewall (WAF) for content filtering and defense against Cross-Site Scripting (XSS)
Read the rest of this entry »
Using the computer for the first time Opening the display panel Your computer’s features and specifications Turning on the power Adding memory (optional) Installing a memory module Removing a memory module Checking total memory Hard Drive Recovery Utilities Creating Recovery CDs/DVDs Hard Disk Drive Recovery using the recovery partition Hard Disk Drive Recovery using the Recovery media Installing drivers and applications Using the TouchPad™ Scrolling with the TouchPad™ Control buttons Disabling or enabling the TouchPad™ Using external display devices Directing the display output when you turn on the computer Adjusting the quality of the external display Using an external keyboard Using a mouse Connecting a printer Setting up a printer Connecting an optional external diskette drive Turning off the computer Options for turning off the computer Using the Turn Off Computer or Shut Down commands Using and configuring Hibernation mode Using and configuring Standby mode Closing the display panel Caring for your computer Cleaning the computer Moving the computer Using a computer lock
Read the rest of this entry »
Mobile Computing Toshiba’s energy-saver design Running the computer on battery power Battery Notice Power management Using additional batteries Charging batteries Charging the main battery Charging the RTC battery Monitoring main battery power Determining remaining battery power What to do when the main battery runs low Setting battery notifications Conserving battery power Power Plans Using a hot key to set the Power Plan Changing the main battery Removing the battery from the computer Inserting a charged battery Taking care of your battery Safety precautions Maintaining your battery Disposing of used batteries Traveling tips
Read the rest of this entry »
This manual supports: ThinkPad X60 (MT 1706, 1707, 1708, 1709, 2509, and 2510) ThinkPad X60s (MT 1702, 1703, 1704, 1705, 2507, 2508, 2533, and 2534) ThinkPad X61 (MT 7673, 7674, 7675, 7676, 7678, and 7679) ThinkPad X61s (MT 7666, 7667, 7668, 7669, 7670, and 7671) ThinkPad® X60, X60s, X61, and X61s Hardware Maintenance Manual Note Before using this information and the product it supports, be sure to read the general information under “Notices” on page 197. First Edition (May 2007) © Copyright Lenovo 2007. All rights reserved. U.S. GOVERNMENT USERS – RESTRICTED RIGHTS: Our products and/or services are provided with RESTRICTED RIGHTS. Use, duplication or disclosure by the Government is subject to the GSA ADP Schedule contract with Lenovo, if any, or the standard terms of this commercial license, or if the agency is unable to accept this Program under these terms, then we provide this Program under the provisions set forth in Commercial Computer Software–Restricted Rights at FAR 52.227-19, when applicable, or under Rights in Data-General, FAR 52.227.14 (Alternate III).
Read the rest of this entry »