Quantcast
  • E-mail
  • Print
  • Comment
  • Font Size
  • Digg
  • del.icio.us
  • Discuss article

Breach Security Technology Expert to Lead Discussion on Virtual Patching for Web Applications at SANS Network Security 2007

Posted on: Friday, 21 September 2007, 09:00 CDT

CARLSBAD, Calif., Sept. 21 /PRNewswire/ -- Breach Security, Inc., the leader in web application security, today announced that Ryan C. Barnett, director of Application Security Training for Breach Security, will be speaking at the SANS Network Security 2007 Conference. Barnett will explain how virtual patching for web applications can close the window of opportunity for attackers to exploit vulnerabilities within web applications.

Mr. Barnett will be speaking during the SANS @ Night segment of the SANS Network Security 2007 conference on Sunday, September 23rd.

WHO: Ryan C. Barnett serves as director of Application Security Training for Breach Security, Inc. and is also an officer of the Web Application Security Consortium (WASC). Mr. Barnett regularly speaks as an expert on web application security and internet-based attacks. WHAT: Virtual Patching for Web Applications with ModSecurity Sunday, September 23, 2007 6pm - 7pm

Fixing identified vulnerabilities in web applications always requires time. Organizations often do not have access to a commercial application's source code and are at the vendor's mercy while waiting for a patch. Even if they have access to the code, implementing a patch in development takes time. This leaves a window of opportunity for the attacker to exploit. Virtual patching (also called "just-in-time patching" and "external patching") is one of the biggest advantages of web application firewalls as they can fix this problem externally. A fix for a specific vulnerability is usually very easy to design and in most cases it can be done in less than 15 minutes. This presentation will outline exactly when and where Virtual Patching is appropriate, the proper steps for their creation and testing. Several examples will also be discussed.

WHERE: SANS Network Security 2007 Conference Caesars Palace, 3570 Las Vegas Boulevard, Las Vegas, NV 89109 About Breach Security

Breach Security, Inc. is a leading provider of next-generation web application security that protects corporate-critical information. Breach effectively protects web applications of commercial enterprises and government agencies alike against Internet hacking attacks and provides an effective solution for expanding security challenges such as identity theft, information leakage, and insecurely coded applications. Breach's solutions are ideal for any organization's regulatory compliance requirements for security. Breach was founded in 2004 and is headquartered in Carlsbad, Calif. For more information visit: http://www.breach.com/

Breach Security, Inc.

CONTACT: Ronnie Manning of Breach Security, Inc., +1-619-822-2239,rmanning@breach.com

Web site: http://www.breach.com/


Source: PRNewswire

More News in this Category


Related Articles



Rating: 2.8 / 5 (6 votes)
Rate this article:
1/52/53/54/55/5

User Comments (0)

Comment on this article

Your Name
Text from the image
Comment
max 1200 chars
* All fields are required