Learn how to implement AppSensor in ModSecurity with Ryan Barnett from Trustwave SpiderLabs in this 43-minute conference talk from LASCON 2012. Explore detection points, the AppSensor code integration, and ModSecurity Core Ruleset. Dive into SQL injection challenges and discover a layered approach to security. Gain insights on clientside behavior analysis, honey trap techniques, and effective response actions to enhance your web application's defense mechanisms.
Overview
Syllabus
Introduction
Analogy
Detection Points
AppSensor in the Code
ModSecurity Core Ruleset
SQL Injection Challenge
Layered Approach
Clientside Behavior
Honey Trap
Honeytrap
Response Actions
Taught by
LASCON