Secure Coding mailing list archives

Re: ACM Queue article and security education


From: "David A. Wheeler" <dwheeler () ida org>
Date: Sat, 03 Jul 2004 06:42:29 +0100


On 29 June 2004, James Walden said:


Subject: [SC-L] ACM Queue article and security education

I'd like to open a discussion based on this quote from Marcus Ranum's ACM Queue article entitled "Security: The root of 
the problem":

"We're stuck in an endless loop on the education concept.

We've been trying to 
educate programmers about writing secure code for at least a decade and it 
flat-out hasn't worked. While I'm the first to agree that beating one's head 
against the wall shows dedication, I am starting to wonder if we've chosen the wrong wall. What's Plan B?"



Current thread: