Security Basics mailing list archives

SF new article announcement: Testing Fault Injection in Local Applications


From: Kelly Martin <kel () securityfocus com>
Date: Tue, 23 Jan 2007 17:48:53 -0500

The following Infocus technical article was published on SecurityFocus
today:

Testing Fault Injection in Local Applications
By Chris Wysopal, Lucas Nelson, Dino Dai Zovi, and Elfriede Dustin
published 2007-01-23

This article is a book excerpt that looks at the approach and techniques
used to test the security of local applications. It describes local
resources and interprocess communication, how to enumerate the local
resources an application depends on, and then discusses methods of
testing several of those types of resources. It also describes how to
test ActiveX objects, command-line programs, and applications' use of
local files and shared memory.

http://www.securityfocus.com/infocus/1886


Current thread: