Added 2005-04-11
by Foundstone Professional Services
Validator.NET enables developers to programmatically determine user input locations that could be potentially exploited by hackers and provides proactive steps to build data validation routines which are loaded into a protection module. The tool helps eliminate common vulnerabilities such as SQL Injection and Cross-Site Scripting.

Added 2004-07-05
by Vincent Deffontaines
mod_auth_nufw is a Single Sign On Apache module which performs secure user identification and authentication, based on the Nufw firewalling suite. Nufw marks all connections of a network with a unique UserID. This module takes advantage of that mark and uses it to transparently identify and authenticate users requiring access to an Apache server.

Free CPM Cellular Passwords Manager
Added 2004-07-05
Enter our downloads page to find the free Cellular Passwords Manager.A J2ME program that will manage all your sites/accounts passwords and IDs.The program is PIN protected, simple Menu driven. This program is part of the CAT Cellular Authentication token. The CAT manages the OTPs and Fixed IDs/Passwords accounts.

Added 2004-05-17
by Nathan Dors
Pubcookie is an Open Source package for intra-institutional, single sign-on, end-user Web authentication. More generally, it is an approach to identifying users as they browse to an institution's many websites that require authentication. It helps an institution reuse existing authentication services (like Kerberos, LDAP, or NIS), and it limits the exposure of end-user passwords by ensuring they're only sent to a trusted login service.

Added 2004-05-10
by tao51
The yaSSL software package is a fast, dual-licensed implementation of SSL. It includes SSL client libraries and an SSL server implementation. It supports multiple APIs, including those defined by SSL and TLS. It also supports an OpenSSL compatibility interface.

Added 2004-05-06
by Christian Grothoff
GNUnet is a peer-to-peer framework with focus on providing security. All link-to-link messages in the network are confidential and authenticated. The framework provides a transport abstraction layer and can currently encapsulate the peer-to-peer traffic in UDP, TCP, or SMTP messages. GNUnet supports accounting to provide contributing nodes with better service. The primary service build on top of the core GNUnet framework is anonymous file sharing.

Generic Security Service
Added 2003-11-26
by Simon Josefsson
A bug that prevented 3DES gss_wrap from working in the Kerberos 5 mechanism was fixed. The library headers file now works even when the Kerberos 5 mechanism is disabled. The package has been tested on more platforms.

Added 2003-11-17
by Erik Grinaker
phpSecureSite is an authorization and session-handling system for Web applications built using PHP and MySQL. It is designed to be highly secure and easy to deploy. It gives newbie Web developers an easy way to add session-handling and authorization to their sites, and provides experienced developers with a trustworthy, functional, and flexible security system.

Security Filter
Added 2003-07-15
by Max Cooper
SecurityFilter is intended for use by Java Web application developers. It provides robust security and automatic authentication services for Web applications. It mimics the behavior and configuration format of container-managed security, but has several important advantages that make it an ideal solution for single-context, public Web sites, or when it is necessary or simply desirable to avoid the server configuration hassles and portability issues associated with container-managed security.

Added 2003-05-20
by Christopher SEKIYA
tacshell is a drop-in replacement for sdshell (used with RSA's ACE/Server) that uses the TACACS+ protocol for authentication.

