Secure Coding mailing list archives
Missing the point?
From: "Michael A. Davis" <mdavis () savidtech com>
Date: Tue, 20 Apr 2004 19:40:59 +0100
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 A Network World article, http://www.nwfusion.com/news/2004/0419codereview.html, discusses the various MS patches that came out last week. Ellen Messmer, the author, talks about the many companies and startups that are selling products to help with code auditing and testing to help automate the security review process. Isn't she missing the point? It is not the source code that is the problem -- it is the developer. Thoughts? Thanks, Michael A. Davis Chief Executive Officer Savid Technologies, Inc. http://www.savidtech.com -----BEGIN PGP SIGNATURE----- Version: PGP 8.0.3 iQA/AwUBQIVRFNo69WASbsMmEQIzpwCeMRWZWkLPDdu5Imw1QCTvYfKvWj0AniML 8NRPFtdgGl6GvwR5WOsuU/kT =3oCH -----END PGP SIGNATURE-----
Current thread:
- Yoran on the state of software security Kenneth R. van Wyk (Apr 19)
- <Possible follow-ups>
- Re: Yoran on the state of software security Kenneth R. van Wyk (Apr 20)
- Missing the point? Michael A. Davis (Apr 20)
- Re: Missing the point? Dave Aronson (Apr 20)
- Re: Missing the point? Mads Rasmussen (Apr 20)
- RE: Missing the point? Alun Jones (Apr 20)
- Re: Missing the point? Jared W. Robinson (Apr 21)
- Re: Missing the point? Paco Hope (Apr 20)
- Re: Missing the point? Nash (Apr 20)
- RE: Missing the point? Michael A. Davis (Apr 21)
- Missing the point? Michael A. Davis (Apr 20)
- Re: Missing the point? Pascal Meunier (Apr 20)
- Re: Missing the point? Pascal Meunier (Apr 20)
- RE: Missing the point? Michael S Hines (Apr 23)