Secure Coding mailing list archives
re-writing college books [was: Re: A banner year for software bugs | Tech News on ZDNet]
From: james.walden at gmail.com (James Walden)
Date: Fri, 13 Oct 2006 12:11:43 -0400
On 10/12/06, Craig E. Ward <cew at acm.org> wrote:
I don't think saying "use safer languages" is a good way to say it. It would help conditions significantly if greater care were taken to match the choice of programming language to the problem to be solved or application to be created. If a language like C is most appropriate, then use it, just be sure to take the extra steps needed to develop it securely.
I agree that the programming language should be chosen to match the problem, though it's worth pointing out that security is typically part of the problem to be solved. There are safer systems programming languages than C, such as D and Cyclone. If you've considered the alternatives and you really have to use C because it's the only thing that will do, then yes, use it and be sure to use it securely and verify that fact with static analysis tools and code reviews. James -------------- next part -------------- An HTML attachment was scrubbed... URL: http://krvw.com/pipermail/sc-l/attachments/20061013/d5fe3658/attachment.html
Current thread:
- re-writing college books [was: Re: A banner year for software bugs | Tech News on ZDNet] Gary McGraw (Oct 11)
- re-writing college books [was: Re: A banner year for software bugs | Tech News on ZDNet] Gadi Evron (Oct 11)
- re-writing college books [was: Re: A banner year for software bugs | Tech News on ZDNet] Robert C. Seacord (Oct 12)
- Message not available
- Message not available
- re-writing college books [was: Re: A banner year for software bugs | Tech News on ZDNet] mikeiscool (Oct 13)
- re-writing college books [was: Re: A banner year for software bugs | Tech News on ZDNet] Craig E. Ward (Oct 13)
- re-writing college books [was: Re: A banner year for software bugs | Tech News on ZDNet] Gadi Evron (Oct 11)
- Message not available
- Message not available
- re-writing college books [was: Re: A banner year for software bugs | Tech News on ZDNet] James Walden (Oct 13)
- re-writing college books [was: Re: A banner year for software bugs | Tech News on ZDNet] ljknews (Oct 17)
- Message not available
- re-writing college books [was: Re: A banner year for software bugs | Tech News on ZDNet] Gergely Buday (Oct 18)
- re-writing college books [was: Re: A banner year for software bugs | Tech News on ZDNet] Crispin Cowan (Oct 24)
- re-writing college books - erm.. ahm... Gadi Evron (Oct 27)
- re-writing college books - erm.. ahm... Crispin Cowan (Oct 28)
- re-writing college books - erm.. ahm... Gadi Evron (Oct 28)
- re-writing college books - erm.. ahm... Crispin Cowan (Oct 28)
- re-writing college books - erm.. ahm... Gadi Evron (Oct 29)
- re-writing college books - erm.. ahm... Robert C. Seacord (Oct 29)
- re-writing college books - erm.. ahm... Gadi Evron (Oct 29)