Secure Coding: by date

297 messages starting Jan 01 04 and ending Mar 31 04
Date index | Thread index | Author index


Thursday, 01 January

RE: MISRA C (was: Industry support groups that foster secure/quality coding practices) David Crocker
Re: MISRA C (was: Industry support groups that foster secure/quality coding practices) Steve Litt
RE: MISRA C (was: Industry support groups that foster secure/quality coding practices) ljknews
RE: MISRA C (was: Industry support groups that foster secure/quality coding practices) David Crocker
RE: MISRA C (was: Industry support groups that foster secure/quality coding practices) David Crocker
Re: MISRA C (was: Industry support groups that foster secure/quality coding practices) Steve Litt

Friday, 02 January

RE: MISRA C (was: Industry support groups that foster secure/quality coding practices) David Crocker
Re: MISRA C Crispin Cowan
RE: How C# does fit the bill? (was: MISRA C) Erik Anderson
RE: How C# does fit the bill? (was: MISRA C) Tegels, Kent

Monday, 05 January

Interesting article ZDNet re informal software development quality Kenneth R. van Wyk

Tuesday, 06 January

Re: Interesting article ZDNet re informal software development quality Kenneth R. van Wyk
Re: Interesting article ZDNet re informal software development quality Crispin Cowan
Re: Interesting article ZDNet re informal software development quality Crispin Cowan
Re: Interesting article ZDNet re informal software development quality George Capehart
RE: Interesting article ZDNet re informal software development quality David Crocker

Wednesday, 07 January

Re: Interesting article ZDNet re informal software development quality Bruce Ediger
Re: Interesting article ZDNet re informal software development quality Brian Hetrick
Re: Interesting article ZDNet re informal software development quality George Capehart
RE: Interesting article ZDNet re informal software development quality Alun Jones
RE: Interesting article ZDNet re informal software develop ment quality Nick Lothian
Security Standard Branding & Expectation Checklists Jared W. Robinson

Thursday, 08 January

Re: Security Standard Branding & Expectation Checklists Brett Hutley
Re: Interesting article ZDNet re informal software development quality Crispin Cowan
Re: Security Standard Branding & Expectation Checklists Crispin Cowan
Re: Interesting article ZDNet re informal software development quality Carl G. Alphonce
Re: Security Standard Branding & Expectation Checklists Jared W. Robinson
RE: Interesting article ZDNet re informal software development quality Alun Jones
Re: Interesting article ZDNet re informal software development quality George Capehart
Re: Interesting article ZDNet re informal software development quality George Capehart

Friday, 09 January

Re: Interesting article ZDNet re informal software development quality Bruce Ediger
Re: Interesting article ZDNet re informal software development quality Crispin Cowan
Re: SC-L-DIGEST V1 #9 David A. Wheeler
Processes HAVE been discussed to counter source-control archive attacks David A. Wheeler
Re: Interesting article ZDNet re informal software development quality Brian Utterback
Re: Security Standard Branding & Expectation Checklists Crispin Cowan

Saturday, 10 January

Re: Interesting article ZDNet re informal software development quality George Capehart
RE: Security Standard Branding & Expectation Checklists David Crocker
RE: Security Standard Branding & Expectation Checklists David Crocker
RE: Security Standard Branding & Expectation Checklists ljknews

Sunday, 11 January

Standards for security Gene Spafford
Re: Security Standard Branding & Expectation Checklists Jeff Williams @ Aspect

Monday, 12 January

Re: Re: SC-L-DIGEST V1 #9 Brett Hutley
Re: Standards for security Jeff Williams @ Aspect

Tuesday, 13 January

RE: Standards for security Alun Jones
Re: MISRA C (was: Industry support groups that foster secure/quality coding practices) Brett Hutley
RE: Standards for security Nick Lothian

Thursday, 15 January

Re: Processes HAVE been discussed to counter source-control archive attacks Werner Koch
Personal Firewall Day Tegels, Kent
Re: Processes HAVE been discussed to counter source-control archive attacks Richard Moore
Re: Personal Firewall Day der Mouse
Re: Processes HAVE been discussed to counter source-control archive attacks George Capehart

Friday, 16 January

Re: Personal Firewall Day Brett Hutley
Re: personalFirewallDay Greenarrow 1
JOBS: Secure Software Inc. seeks developers, auditors, and VP of Prof. Svcs. Dave Aronson
More software security jobs Gary McGraw
CORRECTION: URL correction re jobs Dave Aronson

Tuesday, 20 January

Installation and setup of secure applications Kenneth R. van Wyk
Installation and setup of secure applications Jean-Francois Poirier
Re: Installation and setup of secure applications carolyn . ryll
Re: Installation and setup of secure applications Burak DAYIOGLU
Audit report format Giri, Sandeep
Re: Installation and setup of secure applications Andreas Saurwein
Re: Installation and setup of secure applications Jose Nazario
Re: Installation and setup of secure applications Andreas Gaupmann
Re: Installation and setup of secure applications Erik van Konijnenburg
Re: Installation and setup of secure applications der Mouse

Wednesday, 21 January

Re: Installation and setup of secure applications Damir Rajnovic
Administrivia: SC-L archives at virus.org Kenneth R. van Wyk

Thursday, 22 January

RE: Audit report format Giri, Sandeep
Is developer education a lost cause? Kenneth R. van Wyk
RE: Is developer education a lost cause? Jason Wilcox
Re: Is developer education a lost cause? Joe Teff

Friday, 23 January

RE: Is developer education a lost cause? Robert Shields
RE: Is developer education a lost cause? Michael S Hines
Re: Is developer education a lost cause? Pascal Meunier
Re: Is developer education a lost cause? Chris Wysopal
RE: Is developer education a lost cause? Giri, Sandeep
RE: Is developer education a lost cause? Robert Shields
Re: Is developer education a lost cause? Richard Moore
Re: Is developer education a lost cause? Gary McGraw
Developement Education Greenarrow 1
Re: Is developer education a lost cause? George Capehart

Saturday, 24 January

Announce: An Introduction To SQL Injection Attacks For Oracle Developers Kenneth R. van Wyk

Tuesday, 27 January

Hypothetical design question Kenneth R. van Wyk
Re: Hypothetical design question Paco Hope

Wednesday, 28 January

Re: Hypothetical design question Andreas Saurwein
RE: Hypothetical design question Robert Shields
RE: Hypothetical design question Nick Lothian
RE: Hypothetical design question ljknews
RE: Hypothetical design question Dave Paris
RE: Hypothetical design question Andreas Saurwein
RE: Hypothetical design question Alun Jones
Re: Hypothetical design question Paco Hope
Announce: "Integer Handling with the C++ SafeInt Class" Kenneth R. van Wyk
RE: Hypothetical design question Michael S Hines
RE: Hypothetical design question Dave Paris
Re: Hypothetical design question Dave Aronson
Re: Hypothetical design question Andreas Saurwein
RE: Hypothetical design question Nick Lothian

Thursday, 29 January

RE: Hypothetical design question Dave Paris
RE: Hypothetical design question ljknews
Re: Hypothetical design question Kenneth R. van Wyk
Re: Hypothetical design question David A. Wheeler
Code Signing Processes Tegels, Kent
Re: Hypothetical design question Paco Hope
Re: Hypothetical design question Ken Goldman
Re: Re: Hypothetical design question Kenneth R. van Wyk
RE: Hypothetical design question Nick Lothian
RE: Re: Hypothetical design question Nick Lothian
Re: Re: Hypothetical design question der Mouse

Friday, 30 January

Re: Hypothetical design question der Mouse
Re: Hypothetical design question Glenn and Mary Everhart
Re: Hypothetical design question Greenarrow 1
Re: Hypothetical design question Fernando Schapachnik
RE: Re: Hypothetical design question Alun Jones
Re: Re: Hypothetical design question Jose Nazario
RE: Re: Hypothetical design question Carl G. Alphonce
RE: Re: Hypothetical design question Michael S Hines
RE: Is developer education a lost cause? Jeremy Epstein
RE: Hypothetical design question Jeremy Epstein
Re: Hypothetical design question David Harmon
RE: Hypothetical design question David Crocker

Saturday, 31 January

Re: Re: Hypothetical design question der Mouse
Re: Hypothetical design question der Mouse
Re: Code Signing Processes Jared W. Robinson
RE: Hypothetical design question Shea, Brian A
RE: Re: Hypothetical design question Ben Corneau
Re: Is developer education a lost cause? der Mouse

Sunday, 01 February

RE: Hypothetical design question Alun Jones
RE: Hypothetical design question ljknews
Postscript to my long HDQ post. David Harmon
RE: Re: Hypothetical design question Alun Jones

Monday, 02 February

Re: Hypothetical design question Louis Solomon [SteelBytes]
RE: Is developer education a lost cause? Jeremy Epstein
RE: Hypothetical design question Alun Jones
RE: Code Signing Processes Tegels, Kent
RE: Hypothetical design question Michael S Hines
Re: Is developer education a lost cause? jeff . williams

Tuesday, 03 February

Re rant about virii on VMS... Glenn and Mary Everhart
Re: Hypothetical design question Louis Solomon [SteelBytes]
virtual servers Serban Gh. Ghita
RE: Hypothetical design question ljknews
FYI: A couple OWASP updates available Kenneth R. van Wyk
Re: Re rant about virii on VMS... der Mouse
RE: Hypothetical design question Jason Wilcox

Wednesday, 04 February

Re: Hypothetical design question Crispin Cowan
RE: Hypothetical design question Alun Jones
RE: Is developer education a lost cause? Brad Arkin
Re: Re rant about virii on VMS... Andreas Saurwein
RE: Hypothetical design question dtalk-ml
RE: Hypothetical design question dtalk-ml
RE: Hypothetical design question Alun Jones

Thursday, 05 February

Re: Hypothetical design question Crispin Cowan
RE: Bug-free software (was: Re rant about virii on VMS...) David Crocker
RE: Bug-free software (was: Re rant about virii on VMS...) Andreas Saurwein
Re: Bug-free software (was: Re rant about viruses on VMS...) der Mouse
RE: Bug-free software (was: Re rant about viruses on VMS...) David Crocker
RE: Bug-free software (was: Re rant about viruses on VMS...) Andreas Saurwein
RE: Bug-free software (was: Re rant about viruses on VMS...) David Crocker
Re: Bug-free software (was: Re rant about viruses on VMS...) der Mouse
enough OS flames Louis Solomon [SteelBytes]
Administrivia: Opinion polls? (recursive...) Kenneth R. van Wyk
RE: Bug-free software Andreas Saurwein
Re: enough OS flames Crispin Cowan

Friday, 06 February

Re: (whimsy) Bug-free software Terrence Enger
Security improvements in Java JSE 1.5 beta Kenneth R. van Wyk
RE: (whimsy) Bug-free software David Crocker
FW: Interesting article on Slashdot! Undertanding the Technology Michael S Hines

Saturday, 07 February

RE: (whimsy) Bug-free software David Crocker
RE: Bug-free software (was: Re rant about virii on VMS...) Mark Graff
RE: (whimsy) Bug-free software Alun Jones

Wednesday, 11 February

RSS security issues and useful reading Kenneth R. van Wyk

Thursday, 12 February

Secured Coding Greenarrow 1
ANNOUNCE: Two upcoming security events Kenneth R. van Wyk
Microsoft SUS 2.0 Greenarrow 1
Re: Secured Coding Chris Wysopal
RE: Secured Coding jjchryan
Open source fertile ground for foul play? Kenneth R. van Wyk

Friday, 13 February

Administrivia: RSS/RDF feed for SC-L in the works Kenneth R. van Wyk
Administrivia: Registration require sites (was Re: Secured Coding) Dave Aronson
Re: Open source fertile ground for foul play? Jean-Francois Poirier

Saturday, 14 February

Re: Administrivia: Registration require sites (was Re: Secured Coding) Alex Lambert

Sunday, 15 February

Re: Open source fertile ground for foul play? Crispin Cowan
RBAC question avi
Re: Open source fertile ground for foul play? Kenneth R. van Wyk
Re: RBAC question Glenn and Mary Everhart

Monday, 16 February

Re: RBAC question George Capehart
Re: Administrivia: RSS/RDF feed for SC-L in the works Kenneth R. van Wyk

Tuesday, 17 February

Request for SC conferences Kenneth R. van Wyk
New IEEE Security & Privacy Department: help wanted Gary McGraw

Wednesday, 18 February

Re: Request for SC conferences Danny Smith
Re: Request for SC conferences Crispin Cowan
Consortium to Target Web App Security Kenneth R. van Wyk

Thursday, 19 February

[OT] Free Windows Security Update CD Aryeh Goretsky
Enough about software security already! Gary McGraw
On "application security" Gary McGraw
CFP: Attacking systems Gary McGraw

Friday, 20 February

Re: On "application security" Kenneth R. van Wyk
RE: On "application security" Gary McGraw

Monday, 23 February

Microsoft DevDays 2004 Web Development Track: Focus on Security Anil John
List of SC conferences (v 1.0) Kenneth R. van Wyk

Tuesday, 24 February

Homeland security Request Greenarrow 1
RE: Homeland security Request Thor Larholm

Wednesday, 25 February

Any software security news from the RSA conference? Kenneth R. van Wyk
Code signing and Java Web Start Mona Wong-Barnum

Thursday, 26 February

RE: Any software security news from the RSA conference? Gary McGraw
RE: Code signing and Java Web Start Dave Paris
ACL (access control lists) generic design questions William Herrera
RE: Code signing and Java Web Start Gary McGraw
Re: Code signing and Java Web Start Kenneth R. van Wyk
Re: ACL (access control lists) generic design questions Richard Moore
RE: ACL (access control lists) generic design questions Shea, Brian A
Re: Any software security news from the RSA conference? Bill Cheswick
Re: ACL (access control lists) generic design questions Peter G. Neumann
Re: Any software security news from the RSA conference? Mark Curphey
Re: Any software security news from the RSA conference? Mark Curphey

Friday, 27 February

Re: Homeland security Request Crispin Cowan
Re: ACL (access control lists) generic design questions Glenn and Mary Everhart
Humor: Re: Any software security news from the RSA conference? Dave Aronson
RE: Any software security news from the RSA conference? Dave Paris
RE: ACL (access control lists) generic design questions Bill Eddins
Re: SC-L-DIGEST V1 #37 Ken Goldman
Re: Any software security news from the RSA conference? jnf
Re: Any software security news from the RSA conference? ljknews

Monday, 01 March

RE: Any software security news from the RSA conference? Alun Jones
RE: Any software security news from the RSA conference? ljknews
RE: ACL (access control lists) generic design questions (oh, and Reply-To) Kim Gräsman

Tuesday, 02 March

Re: Any software security news from the RSA conference? Mark D. Rockman
interesting presentation Jose Nazario

Wednesday, 03 March

Looking for good software security stats Kenneth R. van Wyk
Re: Looking for good software security stats Chris Wysopal

Thursday, 04 March

Humor: Secure coding in the comics (Foxtrot) Kenneth R. van Wyk
Re: Looking for good software security stats Greenarrow 1
Re: Humor: Secure coding in the comics (Foxtrot) jnf
User Education Tool? Andreas Saurwein
Re: User Education Tool? Dave Aronson
Re: User Education Tool? Andreas Saurwein
Re: User Education Tool? George Capehart

Friday, 05 March

Re: User Education Tool? Dave Aronson

Monday, 08 March

Book list Gary McGraw
Re: Looking for good software security stats Pascal Meunier
RE: Looking for good software security stats Gary McGraw

Tuesday, 09 March

Opinion re an interesting article on Linux security in Linux Journal Kenneth R. van Wyk
Re: Opinion re an interesting article on Linux security in Linux Journal Richard Moore
RE: Opinion re an interesting article on Linux security in Linux Journal Michael S Hines
Re: Opinion re an interesting article on Linux security in Linux Journal Michal Zalewski

Wednesday, 10 March

Re: Opinion re an interesting article on Linux security in Linux Journal Bill Cheswick
RE: Opinion re an interesting article on Linux security in Linux Journal Alun Jones
Re: Opinion re an interesting article on Linux security in Linux Journal Ryan Russell
Re: Opinion re an interesting article on Linux security in Linux Journal ljknews
Re: Opinion re an interesting article on Linux security in Linux Journal Richard Moore
Re: Application Sandboxing, communication limiting, etc. Jared W. Robinson
Re: Opinion re an interesting article on Linux security in Linux Journal der Mouse
Re: Application Sandboxing, communication limiting, etc. ljknews
Re: Re: Application Sandboxing, communication limiting, etc. Jose Nazario
RE: Opinion re an interesting article on Linux security in Linux Journal Nick Lothian

Thursday, 11 March

Re: Opinion re an interesting article on Linux security in Linux Journal Martin Stricker
RE: Re: Application Sandboxing, communication limiting, etc. Andreas Sikkema
Re: Java sandboxing not used much Jared W. Robinson
Re: Re: Java sandboxing not used much Kenneth R. van Wyk
Re: Java sandboxing not used much Bill Cheswick
RE: Re: Java sandboxing not used much Jeremy Epstein
RE: Re: Java sandboxing not used much Alun Jones
Re: Java sandboxing not used much Jared W. Robinson
Re: Re: Application Sandboxing, communication limiting, etc. Martin Stricker

Saturday, 13 March

Re: Re: Application Sandboxing, communication limiting, etc. Crispin Cowan

Sunday, 14 March

Re: Re: Application Sandboxing, communication limiting, etc. Crispin Cowan

Monday, 15 March

Re: Re: Java sandboxing not used much Louis Solomon [SteelBytes]

Tuesday, 16 March

New Platform and OS Greenarrow 1
Re: Re: Application Sandboxing, communication limiting, etc. Jared W. Robinson
Re: Re: Application Sandboxing, communication limiting, etc. Jared W. Robinson
Re: Re: Application Sandboxing, communication limiting, etc. Crispin Cowan
Re: Comparison of SubDomain, SELinux and systrace Jared W. Robinson

Saturday, 27 March

Administrivia & Request: Aloha, the moderator is back Kenneth R. van Wyk

Monday, 29 March

Non-English reader Fabien
Re: Administrivia & Request: Aloha, the moderator is back Crispin Cowan
Re: Administrivia & Request: Aloha, the moderator is back jnf
RE: Administrivia & Request: Aloha, the moderator is back Gary McGraw
Looking for Experts Julie Ryan
Re: Non-English reader Christoph Fischer
Re: Administrivia & Request: Aloha, the moderator is back Fernando Schapachnik

Tuesday, 30 March

Re: Administrivia & Request: Aloha, the moderator is back jnf
Re: Administrivia & Request: Aloha, the moderator is back M Taylor
RE: Administrivia & Request: Aloha, the moderator is back jnf
RE: Administrivia & Request: Aloha, the moderator is back Tim Bolton
virtual server - security Serban Gh. Ghita
Re: virtual server - security Scott Nemec

Wednesday, 31 March

RE: virtual server - security Dave Paris
Re: virtual server - security Fernando Schapachnik
Re: virtual server - security Louis Solomon [SteelBytes]
RE: virtual server - security jnf
Re: virtual server - use jail(8) on FreeBSD Paco Hope
RE: virtual server - security Jeremy Epstein
Re: virtual server - security Frank Peters
Re: virtual server - IPS Paco Hope
RE: virtual server - security Dave Paris