CodeScan Labs Research

Welcome to CodeScan Labs’ research section. Here, you will find information about vulnerabilities, new threats, and advisories around vulnerable applications that we have discovered. We’re constantly adding new content, so check back often – or follow @CodeScanDev on Twitter to stay completely up to date.

Advisories
Our researchers are constantly seeking out vulnerable code and websites. Read the details of our research, and learn how to defend your web applications so that you don’t get hit.

Vulnerabilities Explained
There are a wide range of resources out there which explain vulnerabilities – but we’re yet to find one which explains vulnerabilities without a presumption of prior knowledge in security. Learn about vulnerabilities by extending your existing knowledge of programming and development. See attacks that are really being used, and learn how to defend against them.

White Papers

BrokenBoard
BrokenBoard is a sample web application built in ASP.NET C# to allow you to test out CodeScan – and to help you to hone your vulnerability fixing skills. It has a number of known vulnerabilities, and is closely tied to the Cross Site Scripting article in the Vulnerabilities Explained section of the site.

Assistance with CodeScan Developer
You can get assistance with CodeScan Developer by e-mailing us – support@codescan.com – or visiting the CodeScan Forums