Search This Blog

Tuesday, January 20, 2015

Mobile version of AMODIT will be ready soon

It will be mobile version of web application. It will be optimised for smartphones screen and touch interface. Expect more news soon...


Wednesday, January 14, 2015

AMODIT passed security audit

We are glad to inform that AMODIT has successfully passed security audit. Both automatic and manual tests were run. During tests preparation special stress was put on detecting exploits mentioned in OWASP Top 10 (http://www.owasp.org/), SANS Top 20 attack vectors (http://www.sans.org/top20/) and MITRE's Common Weakness Enumeration (CWE) (http://cwe.mitre.org/).
The attempts of following sorts of attacks were performed:

  • SQL injection
  • OS command injection
  • Classic buffer overflow
  • Cross-site scripting (XSS)
  • Cross-site reguest forgery (CSRF)
  • Session hijacking
  • Foreceful browsing
  • Missing function level access control request


What is more, the following areas were examined:

  • Password policy (include: recovery, changing, strenght)
  • Cookies expire policy
  • Database roles policy
  • Strength of cryptographic algorithms

Saturday, January 10, 2015

Field names displayed in selected language

Currently a new functionality has been introduced into AMODIT Platform that enables a display of field names in accordance to selected language. It’s another step in making our Platform more accessible for users working in multilingual environment.

How does it work?

To define a field names in a specific language, enter them in the form of:
language symbol: the field name in selected language
Contractor
pl: Kontrahent
fr: Entrepreneur
de: Auftragnehmer


In case of selecting Polish language Amodit Platform user will see the form in the way presented below:














At the same time another French speaking user  will see the respective screen: