TWSL2011-002: Vulnerabilities in Comcast DOCSIS 3.0 Business Gateways (SMCD3G-CCR)

February 05, 2011 | Josh Grunzweig

The SpiderLabs team at Trustwave published a new advisory yesterday, which ...

LOIC DDoS Analysis and Detection

January 28, 2011 | Ryan Barnett

Submitted By Rodrigo Montoro

Advanced Topic of the Week: Generic Attack Payload Detection

January 27, 2011 | Ryan Barnett

The Inevitable Bypass of Blacklist Filtering Let's face the facts, blacklist ...

Trustwave's Global Security Report 2011- Now Available

January 20, 2011 | SpiderLabs Anterior

Today we released Trustwave's Global Security Report 2011 (short registration ...

Trustwave's Global Security Report 2011: Web Application Risks

January 20, 2011 | Ryan Barnett

Yesterday, we released Trustwave's Global Security Report 2011 (short ...

SpiderLabs at Black Hat DC 2011

January 12, 2011 | SpiderLabs Anterior

Next week, there will be several members of the SpiderLabs team at Black Hat ...

Detecting Malice with ModSecurity: CSRF Attacks

January 11, 2011 | Ryan Barnett

This week's installment of Detecting Malice with ModSecurity will discuss how ...

ModSecurity Advanced Topic of the Week: Credit Card Tracking

January 04, 2011 | Ryan Barnett

The just released CRS v2.1.0 includes Credit Card Tracking rules. These will ...

Welcome to SpiderLabs Anterior!

January 03, 2011 | SpiderLabs Anterior

SpiderLabs is the advanced security team at Trustwave with a focus on ...

Welcoming Tom Brennan to SpiderLabs

January 03, 2011 | SpiderLabs Anterior

I am pleased to announce that industry veteran Tom Brennan has joined the ...

Anti-Security and the Christmas Day Incident

December 29, 2010

On the morning of Dec. 25, yet another anti-security eZine was published, its ...

Announcing Release of OWASP ModSecurity Core Rule Set v2.1.0

December 29, 2010 | Ryan Barnett

I am pleased to announce the release of the OWASP ModSecurity Core Rule Set ...

(Updated) Advanced Topic of the Week: Handling Authorized Scanning Traffic

December 21, 2010 | Ryan Barnett

Updated - the latest OWASP ModSecurity CRS release has a rules file to handle ...

Updated ModSecurity Demonstrations

December 16, 2010

ModSecurity Demonstration Projects We have a number of different ModSecurity ...

thicknet: starting wars and funny hats

December 13, 2010 | nosteve

Man-in-the-middle attacks are old. Really, really old. Maybe even as old as ...

CVE-2010-4506 and CVE-2010-4507 Released

December 11, 2010 | Josh Grunzweig

The SpiderLabs team published two new advisories today. The first, ...

New Director of SpiderLabs EMEA Announced

December 08, 2010 | SpiderLabs Anterior

I am very pleased to be able to announce on this blog that the SpiderLabs team ...

Announcing Release of CRS v2.0.9

November 18, 2010 | SpiderLabs Anterior

Greetings everyone,

Advanced Topic of the Week: Traditional vs. Anomaly Scoring Detection Modes

November 18, 2010 | SpiderLabs Anterior

In the latest SVN trunk version of the CRS (2.0.9), we have implemented the ...

Encrypting Data at Rest

November 16, 2010

Data should be encrypted at rest and in motion. In this post, I'll discuss ...

ModSecurity 2.5.13 release candidate

November 05, 2010 | SpiderLabs Anterior

A release candidate of 2.5.13 ModSecurity into the svn repository (branch ...

Detecting Malice with ModSecurity: IP Forensics

November 03, 2010 | SpiderLabs Anterior

This week's installment of Detecting Malice with ModSecurity will discuss the ...

Detecting Malice with ModSecurity: GeoLocation Data

October 27, 2010 | SpiderLabs Anterior

I would like to introduce a new blog series entitled - Detecting Malice with ...

ModSecurity Life cycle

October 22, 2010 | SpiderLabs Anterior

We are proud to announce the new release 2.5.13 is under development and will ...

ModSecurity User Survey Results Released

October 21, 2010

As a result of the acquisition of Breach Security (and thus ModSecurity) by ...

Advanced Topic of the Week: Request Header Tagging

October 21, 2010

Request Header Tagging

Welcome Aboard Breno Silva

October 13, 2010 | SpiderLabs Anterior

I am excited to announce that Breno Silva has joined Trustwave's SpiderLabs ...

Advanced Topic of the Week: Preventing Malicious PDF File Uploads

October 06, 2010 | SpiderLabs Anterior

Many reports have indicated that malicious PDFs that exploit flaws in Adobe's ...