Secure Coding: by author

171 messages starting Feb 03 06 and ending Jan 22 06
Date index | Thread index | Author index


Al Eridani

Bugs and flaws Al Eridani (Feb 03)

Andrew Rucker Jones

eWeek says "Apple's Switch to Intel Could Allow OS X Exploits" Andrew Rucker Jones (Jan 27)

Andrew van der Stock

Re: [Full-disclosure] 4 Questions: Latest IE vulnerability, Firefox vs IE security, User vs Admin risk profile, and browsers coded in 100% Managed Verifiable code Andrew van der Stock (Mar 28)
Java integer overflows (was: a really long topic) Andrew van der Stock (Mar 28)
[Owasp-dotnet] Re: Is there any Security problem in Ajax technology? Andrew van der Stock (Mar 14)
Fwd: Security problems with Ajax Andrew van der Stock (Mar 06)

Blue Boar

eWeek says "Apple's Switch to Intel Could Allow OS X Exploits" Blue Boar (Jan 27)
Bugs and flaws Blue Boar (Feb 02)

Brian Chess

Re: SC-L Digest, Vol 2, Issue 17 Brian Chess (Feb 03)
Bugs and flaws Brian Chess (Feb 03)
Bugs and flaws Brian Chess (Feb 02)
RE: The role static analysis tools play in uncovering elements of design Brian Chess (Feb 05)

Chris Wysopal

Bugs and flaws Chris Wysopal (Feb 02)
Bugs and flaws Chris Wysopal (Feb 02)

Crispin Cowan

eWeek says "Apple's Switch to Intel Could Allow OS X Exploits" Crispin Cowan (Jan 27)
Bugs and flaws Crispin Cowan (Feb 07)
Bugs and flaws Crispin Cowan (Feb 03)
Bugs and flaws Crispin Cowan (Jan 31)
Bugs and flaws Crispin Cowan (Feb 01)
eWeek: AJAX Poses Security, Performance Risks Crispin Cowan (Jan 31)
ZDNET: LAMP lights the way in open-source security Crispin Cowan (Mar 07)
Bugs and flaws Crispin Cowan (Feb 02)
RE: The role static analysis tools play in uncovering elements of design Crispin Cowan (Feb 07)

Dana Epp

Bugs and flaws Dana Epp (Feb 03)

Dave Wichers

Call For Papers: 2006 OWASP AppSec Europe Conference Dave Wichers (Feb 17)

David A. Wheeler

4 Questions: Latest IE vulnerability, Firefox vs IE security, User vs Admin risk profile, and browsers coded in 100% Managed Verifiable code David A. Wheeler (Mar 27)
Bugs and flaws -- Micro-tainting David A. Wheeler (Feb 01)

David Crocker

Bugs and flaws David Crocker (Feb 02)

der Mouse

eWeek says "Apple's Switch to Intel Could Allow OS X Exploits" der Mouse (Jan 27)
Re: [Full-disclosure] 4 Questions: Latest IE vulnerability, Firefox vs IE security, User vs Admin risk profile, and browsers coded in 100% Managed Verifiable code der Mouse (Mar 29)
Managed Code and Runtime Environments - Another layer of added security? der Mouse (Mar 29)
4 Questions: Latest IE vulnerability, Firefox vs IE security, User vs Admin risk profile, and browsers coded in 100% Managed Verifiable code der Mouse (Mar 27)
Bugs and flaws der Mouse (Feb 02)
Managed Code and Runtime Environments - Another layer of added security? der Mouse (Mar 29)
Managed Code and Runtime Environments - Another layer of added security? der Mouse (Mar 29)

Dinis Cruz

Is there any Security problem in Ajax technology? Dinis Cruz (Mar 06)
[OWASP-LEADERS] Re: [Owasp-dotnet] RE: 4 Questions: Latest IE vulnerability, Firefox vs IE security, Uservs Admin risk profile, and browsers coded in 100% Managed Verifiable code Dinis Cruz (Mar 28)
On sandboxes, and why you should care Dinis Cruz (Mar 30)
Re: [Owasp-dotnet] RE: 4 Questions: Latest IE vulnerability, Firefox vs IE security, User vs Admin risk profile, and browsers coded in 100% Managed Verifiable code Dinis Cruz (Mar 26)
4 Questions: Latest IE vulnerability, Firefox vs IE security, User vs Admin risk profile, and browsers coded in 100% Managed Verifiable code Dinis Cruz (Mar 25)
Owasp SiteGenerator v0.70 (public beta release) Dinis Cruz (Mar 28)
FW: 4 Questions: Latest IE vulnerability, Firefox vs IE security, User vs Admin risk profile, and browsers coded in 100% Managed Verifiable code Dinis Cruz (Mar 28)
[Owasp-dotnet] RE: 4 Questions: Latest IE vulnerability, Firefox vs IE security, Uservs Admin risk profile, and browsers coded in 100% Managed Verifiable code Dinis Cruz (Mar 28)
[OWASP-LEADERS] Re: [Owasp-dotnet] RE: 4 Questions: Latest IE vulnerability, Firefox vs IE security, Uservs Admin risk profile, and browsers coded in 100% Managed Verifiable code Dinis Cruz (Mar 28)
[Owasp-dotnet] RE: 4 Questions: Latest IE vulnerability, Firefox vs IE security, Uservs Admin risk profile, and browsers coded in 100% Managed Verifiable code Dinis Cruz (Mar 26)
Re: [Owasp-dotnet] Re: Is there any Security problem in Ajax technology? Dinis Cruz (Mar 28)

Don Jackson

ZDNet: Microsoft to hunt for new species of Windows bug Don Jackson (Jan 10)

Evans, Arian

(Software Risk)--was-->Bugs and flaws Evans, Arian (Feb 08)
Bugs and flaws Evans, Arian (Feb 06)
Bugs and flaws Evans, Arian (Feb 06)

Gadi Evron

ZDNet: Microsoft to hunt for new species of Windows bug Gadi Evron (Jan 10)
heap protection in glibc - some questions Gadi Evron (Jan 19)
[Owasp-dotnet] Re: Is there any Security problem in Ajax technology? Gadi Evron (Mar 16)
Is there any Security problem in Ajax technology? Gadi Evron (Mar 14)
it's not a bug, it's a feature! Gadi Evron (Feb 08)
static analysis you say? Gadi Evron (Feb 08)

Gary McGraw

ZDNET: LAMP lights the way in open-source security Gary McGraw (Mar 07)
Bugs and flaws Gary McGraw (Feb 02)
Bugs and flaws Gary McGraw (Feb 02)
Software security for the enterprise Gary McGraw (Mar 07)
Question about the terms "encypt" and "secure" Gary McGraw (Mar 06)
Interview on informIT Gary McGraw (Mar 05)
it's not a bug, it's a feature! Gary McGraw (Feb 09)
Any interest in an informal SC-L BoF at S3? Gary McGraw (Jan 19)
Freedom to tinker Gary McGraw (Feb 15)
Software Security (the book) Gary McGraw (Feb 03)
eWeek says "Apple's Switch to Intel Could Allow OS XExploits" Gary McGraw (Jan 27)
ZDNET: LAMP lights the way in open-source security Gary McGraw (Mar 07)
Bugs and flaws Gary McGraw (Feb 02)
Bugs and flaws Gary McGraw (Feb 02)
Bugs and flaws Gary McGraw (Feb 06)
Software security hits the big time Gary McGraw (Mar 02)
BSI: SOA what? Gary McGraw (Feb 21)
CNN podcast Gary McGraw (Mar 31)
Bugs and flaws Gary McGraw (Jan 30)
Podcast Gary McGraw (Feb 16)
Bugs and flaws Gary McGraw (Feb 03)
Bugs and flaws Gary McGraw (Feb 06)
RSA book signing Gary McGraw (Feb 13)

Gavin, Michael

ZDNET: LAMP lights the way in open-source security Gavin, Michael (Mar 07)
ZDNET: LAMP lights the way in open-source security Gavin, Michael (Mar 07)
Bugs and flaws Gavin, Michael (Feb 02)
ZDNET: LAMP lights the way in open-source security Gavin, Michael (Mar 07)

George Capehart

[Owasp-dotnet] Re: Is there any Security problem in Ajax technology? George Capehart (Mar 15)
Is there any Security problem in Ajax technology? George Capehart (Mar 13)
[Owasp-dotnet] Re: Is there any Security problem in Ajax technology? George Capehart (Mar 16)

Greg Beeley

Bugs and flaws Greg Beeley (Feb 03)

Gunnar Peterson

[Full-disclosure] Re: [Owasp-dotnet] RE: 4 Questions: LatestIE vulnerability, Firefox vs IE security, Uservs Admin risk profile, and browsers coded in 100% Managed Verifiable code Gunnar Peterson (Mar 29)
eWeek: AJAX Poses Security, Performance Risks Gunnar Peterson (Feb 28)
Bugs and flaws Gunnar Peterson (Feb 07)
Bugs and flaws Gunnar Peterson (Feb 01)
[Owasp-dotnet] RE: 4 Questions: Latest IE vulnerability, Firefox vs IE security, Uservs Admin risk profile, and browsers coded in 100% Managed Verifiable code Gunnar Peterson (Mar 29)
BSI: SOA what? Gunnar Peterson (Feb 22)
Bugs and flaws Gunnar Peterson (Feb 02)

James Stibbards

Bugs and flaws James Stibbards (Feb 03)

Jeff Williams

Bugs and flaws Jeff Williams (Feb 02)
ZDNET: LAMP lights the way in open-source security Jeff Williams (Mar 07)
RE: The role static analysis tools play in uncovering elements of design Jeff Williams (Feb 03)
Bugs and flaws Jeff Williams (Feb 02)
PHP and insecurity Jeff Williams (Jan 25)
Bugs and flaws Jeff Williams (Feb 02)
Re: 4 Questions: Latest IE vulnerability, Firefox vs IE security, Uservs Admin risk profile, and browsers coded in100% Managed Verifiable code Jeff Williams (Mar 28)
RE: The role static analysis tools play in uncoveringelements of design Jeff Williams (Feb 05)
Bugs and flaws Jeff Williams (Feb 07)

Jeremy Epstein

ZDNET: LAMP lights the way in open-source security Jeremy Epstein (Mar 07)
Question about the terms "encypt" and "secure" Jeremy Epstein (Mar 06)

John Steven

Bugs and flaws John Steven (Feb 02)
Bugs and flaws John Steven (Feb 01)
Bugs and flaws John Steven (Feb 02)
The role static analysis tools play in uncovering elements of design John Steven (Feb 03)

Jonathan Leffler

Re: Software Security (the book) Jonathan Leffler (Feb 03)

Jose Nazario

eWeek says "Apple's Switch to Intel Could Allow OS X Exploits" Jose Nazario (Jan 30)
eWeek says "Apple's Switch to Intel Could Allow OS X Exploits" Jose Nazario (Jan 27)

Julie Ryan

Bugs and flaws Julie Ryan (Feb 07)

karger at watson.ibm.com

upwards growing stacks karger at watson.ibm.com (Mar 31)
Multics history karger at watson.ibm.com (Mar 30)

Kenneth R. van Wyk

Any interest in an informal SC-L BoF at S3? Kenneth R. van Wyk (Jan 19)
DHS funding open source security scanning Kenneth R. van Wyk (Jan 11)
Any interest in an informal SC-L BoF at S3? Kenneth R. van Wyk (Jan 17)
Book review: Essential PHP Security Kenneth R. van Wyk (Feb 13)
Software security efforts at DTCC Kenneth R. van Wyk (Mar 29)
CFP -- HICSS 2007 Kenneth R. van Wyk (Mar 15)
ZDNET: LAMP lights the way in open-source security Kenneth R. van Wyk (Mar 07)
AJAX security paper Kenneth R. van Wyk (Feb 15)
(fwd) Secure Java apps on Linux using MD5 crypt Kenneth R. van Wyk (Jan 17)
Bugs and flaws Kenneth R. van Wyk (Feb 03)
IEEE Spectrum: The Exterminators Kenneth R. van Wyk (Jan 06)
eWeek says "Apple's Switch to Intel Could Allow OS X Exploits" Kenneth R. van Wyk (Jan 27)
ZDNet: Microsoft to hunt for new species of Windows bug Kenneth R. van Wyk (Jan 09)
Administrative: whitelisting on SC-L Kenneth R. van Wyk (Feb 02)
eWeek: AJAX Poses Security, Performance Risks Kenneth R. van Wyk (Jan 30)

Kentaro Arai

Is there any Security problem in Ajax technology? Kentaro Arai (Mar 06)

ljknews

[Owasp-dotnet] RE: 4 Questions: Latest IE vulnerability, Firefox vs IE security, Uservs Admin risk profile, and browsers coded in 100% Managed Verifiable code ljknews (Mar 27)
Question about the terms "encypt" and "secure" ljknews (Mar 06)
4 Questions: Latest IE vulnerability, Firefox vs IE security, User vs Admin risk profile, and browsers coded in 100% Managed Verifiable code ljknews (Mar 25)
Where to read about construction quality software ljknews (Feb 06)
eWeek says "Apple's Switch to Intel Could Allow OS X Exploits" ljknews (Jan 27)
eWeek: AJAX Poses Security, Performance Risks ljknews (Jan 30)
Question about the terms "encypt" and "secure" ljknews (Mar 06)

Michael S Hines

FW: 4 Questions: Latest IE vulnerability, Firefox vs IE security, User vs Admin risk profile, and browsers coded in 100% Managed Verifiable code Michael S Hines (Mar 27)
Managed Code and Runtime Environments - Another layer of added security? Michael S Hines (Mar 29)

michaelslists at gmail.com

Re: Java integer overflows (was: a really long topic) michaelslists at gmail.com (Mar 28)
Re: [Full-disclosure] 4 Questions: Latest IE vulnerability, Firefox vs IE security, User vs Admin risk profile, and browsers coded in 100% Managed Verifiable code michaelslists at gmail.com (Mar 28)
FW: 4 Questions: Latest IE vulnerability, Firefox vs IE security, User vs Admin risk profile, and browsers coded in 100% Managed Verifiable code michaelslists at gmail.com (Mar 28)
Re: [Owasp-dotnet] Re: 4 Questions: Latest IE vulnerability, Firefox vs IE security, Uservs Admin risk profile, and browsers coded in100% Managed Verifiable code michaelslists at gmail.com (Mar 28)
Re: [Full-disclosure] 4 Questions: Latest IE vulnerability, Firefox vs IE security, User vs Admin risk profile, and browsers coded in 100% Managed Verifiable code michaelslists at gmail.com (Mar 28)
Re: [Full-disclosure] 4 Questions: Latest IE vulnerability, Firefox vs IE security, User vs Admin risk profile, and browsers coded in 100% Managed Verifiable code michaelslists at gmail.com (Mar 28)
Re: [Full-disclosure] Re: Java integer overflows (was: a really long topic) michaelslists at gmail.com (Mar 28)
Re: [Full-disclosure] Re: [Owasp-dotnet] Re: 4 Questions: Latest IEvulnerability, Firefox vs IE security, Uservs Admin risk profile, and browsers coded in100% Managed Verifiable code michaelslists at gmail.com (Mar 28)

Nick FitzGerald

Bugs and flaws Nick FitzGerald (Feb 03)
Bugs and flaws Nick FitzGerald (Feb 03)

Olin Sibert

Managed Code and Runtime Environments - Another layer of added security? Olin Sibert (Mar 29)

Pascal Meunier

eWeek: AJAX Poses Security, Performance Risks Pascal Meunier (Jan 30)
eWeek says "Apple's Switch to Intel Could Allow OS X Exploits" Pascal Meunier (Jan 27)
eWeek says "Apple's Switch to Intel Could Allow OS X Exploits" Pascal Meunier (Jan 27)

Peter G. Neumann

Managed Code and Runtime Environments - Another layer of added security? Peter G. Neumann (Mar 29)

Pete Shanahan

boundaries/responsibilities Pete Shanahan (Feb 08)

Pilon Mntry

Re: [Full-disclosure] 4 Questions: Latest IE vulnerability, Firefox vs IE security, User vs Admin risk profile, and browsers coded in 100% Managed Verifiable code Pilon Mntry (Mar 26)

Stephen de Vries

[OWASP-LEADERS] Re: [Owasp-dotnet] RE: 4 Questions: Latest IE vulnerability, Firefox vs IE security, Uservs Admin risk profile, and browsers coded in 100% Managed Verifiable code Stephen de Vries (Mar 27)
A Modular Approach to Data Validation in Web Applications Stephen de Vries (Mar 27)
[OWASP-LEADERS] Re: [Owasp-dotnet] RE: 4 Questions: Latest IE vulnerability, Firefox vs IE security, Uservs Admin risk profile, and browsers coded in 100% Managed Verifiable code Stephen de Vries (Mar 29)

Steven M. Bellovin

ZDNet: Microsoft to hunt for new species of Windows bug Steven M. Bellovin (Jan 09)
Managed Code and Runtime Environments - Another layer of added security? Steven M. Bellovin (Mar 30)
Bugs and flaws Steven M. Bellovin (Feb 01)
Question about the terms "encypt" and "secure" Steven M. Bellovin (Mar 06)

Wachdorf, Daniel R

Question about the terms "encypt" and "secure" Wachdorf, Daniel R (Mar 06)

Wall, Kevin

Bugs and flaws Wall, Kevin (Feb 02)
4 Questions: Latest IE vulnerability, Firefox vs IE security, Uservs Admin risk profile, and browsers coded in 100% Managed Verifiable code Wall, Kevin (Mar 25)

Wietse Venema

Bugs and flaws Wietse Venema (Feb 03)

William L. Anderson

Question about the terms "encypt" and "secure" William L. Anderson (Mar 05)

Yves Younan

heap protection in glibc - some questions Yves Younan (Jan 22)