- Redmond WA, US Viresh Ramdatmisier - Seattle WA, US Barry Markey - Kirkland WA, US Robert Fish - Seattle WA, US Erik Tayler - Seattle WA, US Dragos Boia - Seattle WA, US Donald Ankney - Seattle WA, US
International Classification:
H04L 29/06
Abstract:
To protect network-based services, offering computer implemented functionality, from attacks, a passive web application firewall reactively identifies vulnerabilities, enabling such vulnerabilities to be quickly ameliorated, without intercepting communications or introducing other suboptimal aspects of traditional web application firewalls. Communications directed to the network-based services are logged and such logs are scanned for entries evidencing attacks, such as based on predetermined attack syntax. Further evaluation of the entries identified as evidencing attacks identifies a subset of those entries that correspond to likely successful attacks. Such further evaluation includes attacking the network-based service in an equivalent manner. Attacks that are found to be successful identify vulnerabilities, and a notification of such vulnerabilities is provided to facilitate amelioration of such vulnerabilities. Vulnerability amelioration can be automatic, such as by automatically adjusting the settings corresponding to the implementation of the network-based services to ameliorate identified vulnerabilities in a predetermined manner.
Microsoft
Senior Security Research Lead
Ioactive, Inc. Jan 2006 - Dec 2011
Senior Security Consultant
Digital Defense, Inc. Dec 2000 - Jan 2006
Security Analyst
Skills:
Penetration Testing Web Application Security Computer Security Vulnerability Assessment Pci Dss Security Application Security Information Security Social Engineering Internet Security Information Security Management Network Security Vulnerability Management Metasploit
Microsoft - Redmond, WA since Jan 2012
Senior Security Engineer
IOActive, Inc. - Greater Seattle Area Jan 2006 - Dec 2011
Senior Security Consultant
Digital Defense, Inc. - San Antonio, Texas Area Dec 2000 - Jan 2006
Security Analyst
Skills:
web application penetration testing network penetration testing social engineering web services burpsuite metasploit wireless security web security web application security risk analysis phishing design review pci dss ethical hacking hacking PCI DSS Web Application Security Social Engineering Penetration Testing Hacking
Interests:
penetration testing, consulting, web application security, science fiction, snowboarding
Certifications:
CISSP, (ISC)² SSCP, (ISC)² PCI QSA, PCI Security Standards Council
Youtube
Charley Chase, Erik Everhard, and Lizz Tayler...
Lizz and Charley share a moment... oh yeah, Erik Everhard's there too...
Category:
Entertainment
Uploaded:
19 Apr, 2011
Duration:
2m
Torae - Tayler Made
Album: Daily Conversation (Produced By Eric G.)
Category:
Music
Uploaded:
08 May, 2009
Duration:
3m 8s
PJ LADD vs TYLER BLEDSOE
BATTLE AT THE BERRICS ! PJ LADD vs TYLER BLEDSOE ! See all battles on ...
Category:
Sports
Uploaded:
06 Feb, 2009
Duration:
4m 54s
Eric Prydz - Pjanoo (Stomp Remix)
A mashup remix of Pjanoo created by Duran Durans Roger Taylor and he's...
Category:
Music
Uploaded:
01 Jun, 2010
Duration:
7m 40s
Wilber the Cat (Episode 1)
This is the first episode of Wilber the Cat. The second episode is her...