Talking About ModSecurity 2.0 With Federico Biancuzzi for SecurityFocus
October 24, 2006 | SpiderLabs Anterior
A while ago Federico Biancuzzi contacted me to ask if I'd be interested to give ...
ModSecurity Cookie and Link Protection Patch
August 18, 2006 | SpiderLabs Anterior
A significant event occurred on the mod-security-users mailing list in July: a ...
ModSecurity Performance Tip
August 18, 2006 | SpiderLabs Anterior
I was asked recently to investigate performance of an ModSecurity installation ...
Apache Reverse Proxy Memory Consumption Observations
August 15, 2006 | SpiderLabs Anterior
Last week I spent some time stress-testing Apache 2.2.3 configured to work as a ...
ModSecurity 1.9.x Performance Testing
August 08, 2006 | SpiderLabs Anterior
You can tell that I am too busy when I take almost three months to blog about ...
Forrester Research Q2 2006 Web Application Firewall Evaluation
July 25, 2006 | SpiderLabs Anterior
Back in March 2006 I was approached by Forrester Research and invited to ...
Yahoo Small Business offers 'ModSecurity-like' functionality
July 13, 2006 | SpiderLabs Anterior
I just came across this and can't help but make a note about it: A web hosting ...
ModSecurity 2: Variables, Collections and Transaction Scoring
July 06, 2006 | SpiderLabs Anterior
Variables and collections are concepts new to ModSecurity 2. ModSecurity 1.x ...
ModSecurity Console Now Available
July 05, 2006 | SpiderLabs Anterior
I love the command line, I do. But there are some tasks where this type of user ...
ModSecurity 2: Explicit Normalisation Options
June 29, 2006 | SpiderLabs Anterior
One of the things I realy dislike in ModSecurity 1.x is that its anti-evasion ...
Secure Browsing Mode Proposal
June 28, 2006 | SpiderLabs Anterior
It's very well known (and even widely accepted) that our current web ...
Jailing Apache On Windows
June 14, 2006 | SpiderLabs Anterior
Yury Zaytsev wrote to me recently to tell me about his experiences in jailing ...
Embeddable Web Application Firewalls and Impedance Mismatch
June 13, 2006 | SpiderLabs Anterior
Some of you may remember I wrote about impedance mismatch that occurs between ...
ModSecurity for Apache 2.0.0-beta-3 now available!
May 23, 2006 | SpiderLabs Anterior
I have been awfully quiet recently, having made my last post to this blog in ...
Apache suEXEC chroot patch
March 28, 2006 | SpiderLabs Anterior
I was recently involved with a project where we needed to configure an Apache ...
First development release of ModSecurity 2.x
March 09, 2006 | SpiderLabs Anterior
It's that time of year again, when I get to work on new features (instead of ...
Small but important improvements in ModSecurity 1.9.3
March 08, 2006 | SpiderLabs Anterior
I have just released ModSecurity for Apache 1.9.3-rc1, a release candidate, as ...
ModSecurity Elevator Pitch at EUSecWest
February 26, 2006 | SpiderLabs Anterior
I spent some time this week at the EUSecWest conference here in London. ...
Web application firewalls primer
January 27, 2006 | SpiderLabs Anterior
(IN)SECURE Magazine Issue 1.5 has just been published. I wrote the cover story, ...
ModSecurity Rules subproject added
January 09, 2006 | SpiderLabs Anterior
If you are a ModSecurity user you may have noticed that I am distributing ...
Massive performance improvements for Apache 1.x users in ModSecurity 1.9.2-rc2
December 24, 2005 | SpiderLabs Anterior
Some ModSecurity users like to run really large rule sets, where the number of ...
ModSecurity 1.9 article on O'Reilly Network
December 02, 2005 | SpiderLabs Anterior
My article ("What's New in ModSecurity"), which describes the most important ...
Positive security model in ModSecurity
November 29, 2005 | SpiderLabs Anterior
One of the major improvements in the next release of ModSecurity (v2.0) will be ...
ModSecurity for Apache 1.9 has been released!
November 10, 2005 | SpiderLabs Anterior
Finally. I already wrote about many new features available in this release. ...
Draft from the Web Application Firewall Evaluation Criteria project
October 15, 2005 | SpiderLabs Anterior
The web application firewall (WAF) market is a bit confusing at the moment ...
A few more features made it into ModSecurity 1.9
September 21, 2005 | SpiderLabs Anterior
A small number of new features made it into 1.9 at the very last minute. ...
Apache 2.1.7 beta released
September 14, 2005 | SpiderLabs Anterior
A new beta version of the Apache web server has been released. This release is ...
What's new in ModSecurity 1.9
September 09, 2005 | SpiderLabs Anterior
You may have noticed it's been a while since ModSecurity has had a major ...