MAC CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>

7-DAY TOP DOWNLOAD

#
Program
iPhone and iPod
Firmware 3.1.2

17,548
Internet Explorer
5.2.3

7,948
RAR Expander 0.8.5
Beta 3 / 0.8.4

4,946
aMule 2.2.6
4,124
Flv Crunch 1.3
3,935
Toast Titanium
10.0.4

3,577
RAR for Mac OS X
3.90

3,532
Apple iLife '09
3,499
Matlab 7.9
3,431
aMSN 0.98.1
3,294

WEEK'S BEST

  • Quicksilver 1.0 Be...
  • Cocktail 4.6
  • Picasa 3.5.2.90
  • Adobe Shockwave Pl...
  • VLC Media Player 1...
  • LimeWire X 5.4.0 B...
  • Apple iTunes 9.0.2
  • VirtualBox 3.0.10 ...
  • FileZilla 3.3.0 RC...
  • Mozilla Firefox 3....
  • aMSN 0.98.1
  • NeoOffice 3.0.1
  • VMware Fusion 3.0....
  • Quinn 3.5.7
  • App Store Expense ...
  • Ableton Live 8.0.9
  • Parallels Desktop ...
  • Alarm Clock Pro 9.2
  • Dock Spaces 3.05
  • Dropbox 0.7.56 / 0...
  • OpenOffice.org 3.2...
  • Adium 1.4 Beta 15 ...
  • Second Life 1.23.5...
  • µTorrent 0.9.3 Bu...
  • Opera 10.10 Beta B...
  • Adobe Reader 9.2
  • VirtualBox 3.0.10 ...
  • RealPlayer 11.1.0 ...
  • Bean 2.4.1
  • Senuti 1.1.7
  • Home / Mac / Security
     Report spyware

    HDIV 2.0.4

    Download button

    No screenshots available
    Downloads: 336  Add to download basket  Tell us about an update
    User Rating:
    Rated by:
    NOT RATED
    0 user(s)
    Developer:

    License / Price:

    Size / OS:

    Binary Format:

    Last Updated:

    Category:
    hdiv.org | More programs
    Freeware / FREE
    9.4 MB / Mac OS X
    Universal Binary Universal Binary
    September 26th, 2008, 09:19 GMT [view history]
    C: \ Security

     Read user reviews (0)  Add a review  Refer to a friend  Subscribe

     

    HDIV description

     

    Java web application security framework that will help you protect your web applications against attacks

    HDIV (HTTP Data Integrity Validator) extends web applications’ behaviour by adding Security functionalities, maintaining the API and the framework specification.

    This implies that we can use HDIV in applications developed in Struts 1.x, Struts 2.x, Spring MVC and JSTL in a transparent way to the programmer and without adding any complexity to the application development.

    It is possible to use HDIV in applications that don’t use Spring MVC, Struts 1.x, Struts 2.x, or JSTL, but in this case it is necessary to modify the application (JSP pages).

    Here are some key features of "HDIV":

    · INTEGRITY: HDIV guarantees integrity (no data modification) of all the data generated by the server which should not be modified by the client (links, hidden fields, combo values, radio buttons, destiny pages, etc.). Thanks to this property HDIV helps to eliminate most of the vulnerabilities based on the parameter tampering.
    · EDITABLE DATA VALIDATION: HDIV eliminates to a large extent the risk originated by attacks of type Cross-site scripting (XSS) and SQL Injection using generic validations of the editable data (text and textarea).
    · CONFIDENTIALITY: HDIV guarantees the confidentiality of the non editable data as well. Usually lots of the data sent to the client has key information for the attackers such as database registry identifiers, column or table names, web directories, etc. All these values are hidden by HDIV to avoid a malicious use of them.
    · ANTI-CROSS SITE REQUEST FORGERY (CSRF) TOKEN: Random string called a token is placed in each form and link of the HTML response, ensuring that this value will be submitted with the next request. This random string provides protection because not only does the compromised site need to know the URL of the target site and a valid request format for the target site, it also must know the random string which changes for each visited page.

    What's New in This Release: [ read full changelog ]

    · Support for Struts 2.0.11
    · Improvement to prevent Cross-site Request Forgery (CSRF) attacks: a random token is included in all requests.
    · protectedExtensions for Struts 1.x: definition of this property is obligatory for Struts 1.x applications
    · "rewrite" tag: this tag is included in HDIV to add HDIV state in url (Struts 1.x)
    · logout in Spring MVC: RedirectViewHDIV don't add HDIV state if session doesn't exist

     


    TAGS:

    web app protection | security framework | protect web app | protect | web app | protection



    HTML code for linking to this page:


    Go to top

    Windows tabGames tabDrivers tabMac tabLinux tabScripts tabMobile tabHandheld tabGadgets tabNews tab

    SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   ENTER NEWS SITE   |   ENGLISH BOARD   |   ROMANIAN FORUM