Microsoft Anti-Cross Site Scripting Library V1.5 is Released!

Hello,   I wanted to announce that today the ACE and the ASP.NET team released V1.5 of the Anti-Cross Site Scripting Library at http://msdn2.microsoft.com/en-us/security/aa973814.aspx. This library is essentially the same library that we used to call IOSec (whose name is retiring so we can converge on a single name) and we’re excited about finally being able…

7

ACE Team’s interview with Scoble on Channel 9 – pt 1

Well its been a while, but ACE’s first video has hit Channel 9 today.  If you’d like to see some of the faces on the team, some interesting discussion of who we are and what we do; please do check it out.  You can view it here.  This is nearly the last or probably the…

1

ACE Services Drops Case Study Flick on Security Development Lifecycle for IT

Hello everyone, my name is Anmol Malhotra and I’m a Security Technologist with ACE [Application Consulting & Engineering] Services team. We are a global team delivering application security services to Microsoft’s esteemed enterprise level customers. Ace Services recently did a case study with First American Title Insurance Company, the second largest title insurance company in…

0

Considering the performance impact of your test data source

Most automated tests require some form of data to be used within the tests.  These are your test data sources and the approach you take for utilizing this data will have an impact on your tests.  The question is how much of an impact. Determining the best approach for storing and accessing data to be…

0

ACE is hiring Security people in Hyderabad, India

Last night I got an email from my friend and ACE team member Anmol who is based out of Hyderabad telling me to post up a job description for the positions they are trying to fill in India.  We are always on the lookout for security talent, and ACE is a global team.  If you…

8

Fast and Secured: Performance Impact of SSL

Our customers always ask what the impact of SSL on performance is. Everyone knows SSL uses more resources. The question is how much the impact is. The following section shows the difference with and without SSL. Sample Application – The sample application used for these tests is the C# version of the IBuySpy Store Application,…

6

Fast and Secured: Perspective on Performance and Security in IT

Performance and security are like brothers in IT. They are similar and yet they fight each other at times. Both performance and security are important inherent qualities in IT systems. Who would not want a fast and secured IT system? You want your home computer to be fast and secured. The bank CEO wants his…

1

Planning for Application Performance Review/Testing

Planning is a critical step in Application Performance Review/Testing. ACE Team defines Application Performance Review/Testing as a methodology that comprised of 4 major types of testing to improve client (user) response time, and server performance.  These include both single user and simulated multiple (virtual) user testing. The key is to look at the application performance…

1

Verifying the Results of your Automated Performance Test

When running an automated performance test against a web application it is important to verify that your results are true and accurate. Many times Automated Performance tests that are poorly written and/or incomplete will cause unwarranted errors within the application under test.  Record and Playback type Automated Performance Tools make test script generation extremely fast…

0