HDIV (HTTP Data Integrity Validator) 2.0.3 Released

2008-01-15 Thread Gorka Vicente
r You can download it from SourceForge.net by following this link: https://sourceforge.net/project/showfiles.php?group_id=139104&release_id=568601 regards, Gorka Vicente. - To unsubscribe, e-mail: [EMAIL PROTECTED] For a

HDIV 2.0.4 now supports Struts 2.0.11

2008-03-11 Thread Gorka Vicente
://cwiki.apache.org/S2PLUGINS/hdiv-plugin.html Mailing list, you can subscribe at: https://lists.sourceforge.net/lists/listinfo/hdiv-user Regards, Gorka Vicente. hdiv.org - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional

Re: How to avoid users changing values of hidden fields using the URL?

2007-06-28 Thread Gorka Vicente
Hi, Yes, you are right. There are instance level security solutions such as Acegi but it adds a performance overhead and are very difficult to maintain because you have to assing perrmisions to each database registry. The same happens with custom access level solutions. if you are using Struts t

HDIV 2.0 adds support for Struts 1.3.8 and Struts 2.0.9

2007-09-14 Thread Gorka Vicente
Hi all, HDIV is an open-source Java web application security framework which aims to prevent most of the common types of web application vulnerabilities, such as SQL injection, cross-site scripting, and parameter tampering. HDIV 2.0 new release supports Struts 2.0.9 and Struts 1.3.8 versions. Yo