jamesgaryjardine.com
Resume | James Jardine
http://www.jamesgaryjardine.com/resume
Security Consultant and Instructor. To download this file as PDF, click here. Phone: 904-638-5431 E-Mail: james@jardinesoftware.com. Http:/ www.jardinesoftware.com. Https:/ www.developsec.com. Principle Consultant/Owner Jardine Software Inc. 1/2004 – Present. Provide developer related security advice to clients. Provide security training for clients. Perform research into .net security. Perform penetration testing and vulnerability assessments for clients. Instructor SANS Institute 7/2011 – 1/2014. Perfo...
jardinesoftware.net
2012 April : Developer Notes
https://www.jardinesoftware.net/2012/04
Forms Authentication: Remember Me? Its Hard Not Too! Posted by James Jardine. On April 4, 2012 · Comments Off on Forms Authentication: Remember Me? Its Hard Not Too! XXE and .Net. Does the End of an Iteration Change Your View of Risk? Open Redirect – Bad Implementation. Potentially Dangerous Request.Path Value was Detected…. Tour de Cure - A fight against diabetes. Click to Donate. Questions or problems regarding this web site should be directed to webmaster@JardineSoftware.com.
jardinesoftware.net
2012 August : Developer Notes
https://www.jardinesoftware.net/2012/08
Another Request Validation Bypass? Posted by James Jardine. On August 29, 2012 · Comments Off on Another Request Validation Bypass? I stumbled across this BugTraq( http:/ www.securityfocus.com/archive/1/524043. Request Method Can Matter. Posted by James Jardine. On August 15, 2012 · Comments Off on Request Method Can Matter. ModSecurity released for IIS. Posted by James Jardine. On August 2, 2012 · Comments Off on ModSecurity released for IIS. It was just announced on Microsoft Technet. That a ModSecurit...
jardinesoftware.net
2013 October : Developer Notes
https://www.jardinesoftware.net/2013/10
Posted by James Jardine. On October 11, 2013 · Comments Off on Bounties For Fixes. It was just recently announced that Google will pay for open-source code security fixes (http:/ www.computerworld.com/s/article/9243110/Google to pay for open source code security fixes). Paying for stuff to happen is nothing new, we have seen Bug Bounty programs popping up in a lot of companies. The idea behind the bug bounty is that people can submit bugs they have found and then . XXE and .Net.
jardinesoftware.com
Resources
http://www.jardinesoftware.com/resources
Vulnerability Assessments / Penetration Tests. Down the Security Rabbithole (#DtSR). 8211; James Jardine, Rafal Los and Michael Santarcangelo discuss current news topics and perform enterprise security interviews. 8211; James Jardine discusses security topics topics as they relate to developers, qa analysts and other non-security team members. 8211; James Jardine blogs about developer (mostly .Net) security topics. Ninja Developers – Application Security Testing and Your SDLC. 8211; James talks about hol...
jardinesoftware.net
2013 November : Developer Notes
https://www.jardinesoftware.net/2013/11
Posted by James Jardine. On November 26, 2013 · Comments Off on ViewStateUserKey: ViewStateMac Relationship. I apologize for the delay as I recently spoke about this at the SANS Pen Test Summit in Washington D.C. but haven't had a chance to put it into a blog. While I was doing some research for my presentation on hacking ASP.Net applications I came across something very interesting that sort of blew . XXE and .Net. Does the End of an Iteration Change Your View of Risk?
jardinesoftware.net
2013 January : Developer Notes
https://www.jardinesoftware.net/2013/01
Developers, Security, Business – Lets All Work Together. Posted by James Jardine. On January 10, 2013 · Comments Off on Developers, Security, Business – Lets All Work Together. A few years ago, my neighbors ran into an issue with each other. Unfortunately for one neighbor, the other neighbor was on the board for the HOA. The first neighbor decided to put up a fence, got the proper approvals and started work on it. They were building the fence them selves . Posted by James Jardine. Posted by James Jardine.
SOCIAL ENGAGEMENT