HDIV 2.0.4 now supports Struts 2.0.11

2008-03-11 Thread Gorka Vicente
://cwiki.apache.org/S2PLUGINS/hdiv-plugin.html Mailing list, you can subscribe at: https://lists.sourceforge.net/lists/listinfo/hdiv-user Regards, Gorka Vicente. hdiv.org - To unsubscribe, e-mail: [EMAIL PROTECTED] For additional

HDIV (HTTP Data Integrity Validator) 2.0.3 Released

2008-01-15 Thread Gorka Vicente
r You can download it from SourceForge.net by following this link: https://sourceforge.net/project/showfiles.php?group_id=139104&release_id=568601 regards, Gorka Vicente. - To unsubscribe, e-mail: [EMAIL PROTECTED] For a

HDIV 2.0 adds support for Struts 1.3.8 and Struts 2.0.9

2007-09-14 Thread Gorka Vicente
Hi all, HDIV is an open-source Java web application security framework which aims to prevent most of the common types of web application vulnerabilities, such as SQL injection, cross-site scripting, and parameter tampering. HDIV 2.0 new release supports Struts 2.0.9 and Struts 1.3.8 versions. Yo

Re: How to avoid users changing values of hidden fields using the URL?

2007-06-28 Thread Gorka Vicente
a hidden field or a parameter if it is a link. By the way you can use HDIV for one Action or for whole application, it's configurable. Nowadays HDIV project has versions for Struts 1.x and Strut2 ( http://cwiki.apache.org/S2PLUGINS/hdiv-plugin.html) regards, Gorka. <http://ww

HDIV for Struts2

2007-06-20 Thread gorka
core it's the same for Struts1 and Struts2. It has been added a new tag module for Struts 2.0.6 tags support. You can have a look at it at http://www.hdiv.org In addition to that there is a quick introduction about HDIV using OWASP top ten 2007 as reference at http://www.hdiv.org/docs/hdiv.p