Web Application Security in a Large Organization -…
ID: 2f890c7d-6577-5d29-aab1-bac1be3db8c9
STIX ID: report--2f890c7d-6577-5d29-aab1-bac1be3db8c9
Feed Name: TrustedSec blog
This article describes a practical, step-by-step approach to discovering, cataloging, and securing an organization's external and internal web applications—particularly in the context of mergers and acquisitions—covering asset discovery (IP/DNS/BGP lookups, Google enumeration, zone transfers), building an application inventory, automated and manual vulnerability testing (Nessus/OpenVAS, dynamic scanners, manual web testing), and establishing vulnerability management and monitoring to move from reactive firefighting to proactive security.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
