Web Application Security, with a Focus on ColdFusion
Although web application security is not product specific we will focus on the last two layers using ColdFusion (CF) and the code. This paper will not cover securing the other layers, policy, or web application risk assessments, which would be a great topic for another GSEC paper.