Full Disclosure mailing list archives

Guide To Secure System Development


From: "Giri, Sandeep" <Sandeep-Giri () deshaw com>
Date: Mon, 3 Feb 2003 18:47:34 +0530

Interesting article..
I hope all will njoy reading this.

Abstract:
Increasingly incompetent developers are creeping their way into important
projects. Considering that most good programmers are pretty bad at security,
bad programmers with roles in important projects are guaranteed to doom the
world to oblivion. The author feels that a step toward washing himself clean
of responsibility is by writing this document. Checking your memcpy() and
malloc() calls have been lectured to death. It's not working. The approach
used by this document is to instead shame developers into producing better
systems. Enjoy.

http://m.bacarella.com/papers/secsoft/html/
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: