Posted by jonasbn on June 15, 2009
I have just release first version of a HTTP interaction helper class for the Danish company DanDomain’s web shop system administrative interface. The module focuses primarily on their partner programs, which is exports of data in text formats. I have done a lot of work on their admin tool exports, changing format of these, applying [...]
Posted by jonasbn on June 12, 2009
One of my latest blog entries have been about a security issue. The sort of issues are as such fixable and often very easy fixes. We have both the knowledge and we have the tools to do so. As I have lined out on that earlier occasion, our organizations sometimes lack the process and QA [...]
Posted by jonasbn on June 12, 2009
I got a mail forwarded from my current manager. A security scan in relation to our PCI certification had flagged a functionality as insecure, on a medium level. The scanning tool was able to post URI encoded strings, which could be evaluated as working Javascript. This would enable a malicious user to manipulate with the [...]