Secure Coding mailing list archives

Insider threats and software


From: gem at cigital.com (Gary McGraw)
Date: Tue, 14 Aug 2007 13:22:08 -0400

Hi sc-l,

My darkreading column this month is devoted to insiders, but with a twist.  In this article, I argue that software 
components which run on untrusted clients (AJAX anyone?  WoW clients?) are an interesting new flavor of insider attack.

Check it out:
http://www.darkreading.com/document.asp?doc_id=131477&WT.svl=column1_1

What do you think?  Is this a logical stretch or something obvious?

gem

company www.cigital.com
podcast www.cigital.com/silverbullet
blog www.cigital.com/justiceleague
book www.swsec.com



Current thread: