Secure Coding: by date

183 messages starting Jan 03 09 and ending Mar 31 09
Date index | Thread index | Author index


Saturday, 03 January

Fwd: CALL FOR PRESENTATIONS - OWASP AppSec Europe 2009 Poland Sebastien Deleersnyder

Sunday, 04 January

SecAppDev 2009 Johan Peeters

Tuesday, 06 January

New Podcast: Reality Check Security Podcast goes live Gary McGraw

Friday, 09 January

CALL FOR TRAINING PROVIDERS - OWASP AppSec Europe 2009 Poland Sebastien Deleersnyder

Monday, 12 January

SANS Institute - CWE/SANS TOP 25 Most Dangerous Programming Errors Kenneth Van Wyk
SANS Institute - CWE/SANS TOP 25 Most Dangerous ProgrammingErrors Tom Brennan - OWASP
Some Interesting Topics arising from the SANS/CWE Top 25 Steven M. Christey
SANS Institute - CWE/SANS TOP 25 Most Dangerous ProgrammingErrors vanderaj vanderaj

Tuesday, 13 January

SANS Institute - CWE/SANS TOP 25 Most Dangerous ProgrammingErrors Gary McGraw
SANS Institute - CWE/SANS TOP 25 Most Dangerous ProgrammingErrors Steven M. Christey
Some Interesting Topics arising from the SANS/CWE Top 25 Greg Beeley
Mitigating XSS in existing JEE apps with AOP - Proof of Concept Rohit Lists
SANS Institute - CWE/SANS TOP 25 Most Dangerous ProgrammingErrors Chris Wysopal
Some Interesting Topics arising from the SANS/CWE Top 25 Johan Peeters

Wednesday, 14 January

SANS Institute - CWE/SANS TOP 25 Most Dangerous Programming Errors Gary McGraw
InternetNews Realtime IT News - New York Plans Application Security Program Kenneth Van Wyk
Silver Bullet 34: Bill Brenner Gary McGraw
SANS Institute - CWE/SANS TOP 25 Most Dangerous ProgrammingErrors Gary McGraw
SANS Institute - CWE/SANS TOP 25 Most Dangerous Programming Errors Steven M. Christey
Some Interesting Topics arising from the SANS/CWE Top 25 Florian Weimer
Some Interesting Topics arising from the SANS/CWE Top 25 Florian Weimer
Some Interesting Topics arising from the SANS/CWE Top 25 Johan Peeters
Some Interesting Topics arising from the SANS/CWE Top 25 Steven M. Christey
Some Interesting Topics arising from the SANS/CWE Top 25 Ivan Ristic
SANS Institute - CWE/SANS TOP 25 Most Dangerous Programming Errors Stephen de Vries
SANS Institute - CWE/SANS TOP 25 Most Dangerous Programming Errors Gary McGraw
Some Interesting Topics arising from the SANS/CWE Top 25 Jim Manico
Some Interesting Topics arising from the SANS/CWE Top 25 Brian Chess

Thursday, 15 January

SANS Institute - CWE/SANS TOP 25 Most Dangerous Programming Errors Stephen de Vries
Some Interesting Topics arising from the SANS/CWE Top 25 Ivan Ristic
SANS Institute - CWE/SANS TOP 25 Most Dangerous Programming Errors Gary McGraw
SANS List etc.. Shouvik Bardhan
SANS List etc.. Gary McGraw
Some Interesting Topics arising from the SANS/CWE Top 25 Joe Teff
SANS List etc.. Matt Bishop
SANS List etc.. Gary McGraw
Contents of SC-L digest.. Jason Grembi
SANS Institute - CWE/SANS TOP 25 Most Dangerous Programming Errors Pravir Chandra
SANS Institute - CWE/SANS TOP 25 Most Dangerous Programming Errors Gary McGraw

Friday, 16 January

SANS/CWE Top 25: "The New Standard" for Webappsec Arian J. Evans

Monday, 19 January

CFP: W2SP 2009: Web 2.0 Security and Privacy 2009 Larry Koved
Silver Bullet: Gunnar Peterson (transcript posted) Gary McGraw
SANS/CWE Top 25: "The New Standard" for Webappsec Stephen Craig Evans
SANS/CWE Top 25: "The New Standard" for Webappsec Arian J. Evans

Thursday, 22 January

Security metrics on flaws detected during architectural review? robert at webappsec.org

Monday, 26 January

OWASP interviews McGraw (oh my) Gary McGraw
OWASP interviews McGraw (oh my) Kenneth Van Wyk
OWASP interviews McGraw (oh my) McGovern, James F (HTSC, IT)
OWASP interviews McGraw (oh my) Gary McGraw

Wednesday, 28 January

SDL / Secure Coding and impact on CWE / Top 25 Steven M. Christey
SDL / Secure Coding and impact on CWE / Top 25 Arian J. Evans

Monday, 02 February

Reality Check: Jim Routh, DTCC Gary McGraw
The security industry needs to re-align its training expectations for QA robert at webappsec.org

Tuesday, 03 February

Web Applications: Achilles' Heel Of Corporate Security -- Security -- InformationWeek Kenneth Van Wyk

Wednesday, 04 February

Security in QA is more than exploits Paco Hope
Security in QA is more than exploits Wieneke, David A.
Security in QA is more than exploits Andy Steingruebl
Security in QA is more than exploits bugtraq at cgisecurity.net
Security in QA is more than exploits Paco Hope

Thursday, 05 February

OWASP Podcast #6 Jim Manico
Security in QA is more than exploits Andy Steingruebl

Monday, 09 February

Application Security Vendors Need Help With Reporting robert at webappsec.org

Tuesday, 10 February

informIT: nine things everybody does Gary McGraw

Friday, 13 February

Conditional Compile statements-- coding standards, and code review smurray1
Conditional Compile statements-- coding standards, and code review Robert Seacord

Monday, 16 February

Conditional Compile statements-- coding standards, and code review Bennett, Jason

Sunday, 22 February

Conditional Compile statements-- coding standards, and code review David Crocker

Monday, 23 February

Silver Bullet 35: Daniel Suarez Gary McGraw

Monday, 02 March

CFP: W2SP 2009: Web 2.0 Security and Privacy 2009 - submission deadline is this Friday Larry Koved

Tuesday, 03 March

Reality Check: EMC Eric Baize Gary McGraw
Reality Check: EMC Eric Baize Kenneth Van Wyk
Reality Check: EMC Eric Baize Gary McGraw
Call for papers: Programming Languages and Analysis for Security (PLAS) Brian Chess

Wednesday, 04 March

OWASP Podcast #10 with Ken van Wyk Jim Manico
OWASP Podcast #11 with Steve Christey and Bob Martin Jim Manico
BSIMM lives Gary McGraw

Friday, 06 March

Relationship between BSIMM and SAMM Pravir Chandra

Tuesday, 10 March

Positive impact of an SSG Sammy Migues
Gartner covers software security Gary McGraw
Positive impact of an SSG Pravir Chandra
Positive impact of an SSG Sammy Migues

Wednesday, 11 March

Positive impact of an SSG Pravir Chandra
Positive impact of an SSG Sammy Migues
Positive impact of an SSG Benjamin Tomhave
Positive impact of an SSG Brian Chess
Positive impact of an SSG Pravir Chandra
Positive impact of an SSG Pravir Chandra
Positive impact of an SSG Benjamin Tomhave
Positive impact of an SSG Brian Chess
Positive impact of an SSG Benjamin Tomhave

Thursday, 12 March

Rigged podcasts can leak your iTunes username/password | Zero Day | ZDNet.com Kenneth Van Wyk
Rigged podcasts can leak your iTunes username/password |Zero Day | ZDNet.com Jim Manico

Wednesday, 18 March

BSIMM: Confessions of a Software Security Alchemist (informIT) Gary McGraw
Politics, cybersecurity, and software Gary McGraw
BSIMM: Confessions of a Software Security Alchemist (informIT) Steven M. Christey
BSIMM: Confessions of a Software Security Alchemist (informIT) Gary McGraw
Silver Bullet: McGovern interviews McGraw Gary McGraw
Announcing LAMN: Legion Against Meaningless certificatioNs Jeremy Epstein
BSIMM: Confessions of a Software Security Alchemist (informIT) Steven M. Christey
BSIMM: Confessions of a Software Security Alchemist (informIT) Gary McGraw
BSIMM: Confessions of a Software Security Alchemist(informIT) Wall, Kevin
BSIMM: Confessions of a Software Security Alchemist (informIT) Steven M. Christey

Thursday, 19 March

BSIMM: Confessions of a Software Security Alchemist (informIT) Stephan Neuhaus
BSIMM: Confessions of a Software Security Alchemist (informIT) John Steven
BSIMM: Confessions of a Software Security Alchemist (informIT) Gary McGraw
BSIMM: Confessions of a Software Security Alchemist(informIT) Gary McGraw
Announcing LAMN: Legion Against Meaningless certificatioNs SC-L Reader Dave Aronson
Announcing LAMN: Legion Against Meaningless certificatioNs Benjamin Tomhave
Announcing LAMN: Legion Against Meaningless certificatioNs Jeremy Epstein
BSIMM: Confessions of a Software Security Alchemist (informIT) Gary McGraw
Announcing LAMN: Legion Against Meaningless certificatioNs Paco Hope
BSIMM: Confessions of a Software Security Alchemist (informIT) Stephan Neuhaus
Announcing LAMN: Legion Against MeaninglesscertificatioNs Goertzel, Karen [USA]
Announcing LAMN: Legion Against MeaninglesscertificatioNs Tom Brennan - OWASP
BSIMM: Confessions of a Software Security Alchemist (informIT) Jim Manico
BSIMM: Confessions of a Software Security Alchemist (informIT) Jim Manico
BSIMM: Confessions of a Software Security Alchemist (informIT) Gary McGraw
BSIMM: Confessions of a Software Security Alchemist (informIT) Gary McGraw
BSIMM: Confessions of a Software Security Alchemist (informIT) Jim Manico
BSIMM: Confessions of a Software Security Alchemist (informIT) Benjamin Tomhave
BSIMM: Confessions of a Software Security Alchemist (informIT) kowsik

Friday, 20 March

more relevant certifications SC-L Reader Dave Aronson
BSIMM: Confessions of a Software Security Alchemist(informIT) Goertzel, Karen [USA]
BSIMM: Confessions of a Software Security Alchemist(informIT) Benjamin Tomhave
BSIMM: Confessions of a Software Security Alchemist(informIT) Benjamin Tomhave
more relevant certifications Goertzel, Karen [USA]
BSIMM: Confessions of a Software SecurityAlchemist(informIT) Pravir Chandra
BSIMM: Confessions of a Software Security Alchemist (informIT) John Steven
more relevant certifications SC-L Reader Dave Aronson
BSIMM: Confessions of a Software Security Alchemist(informIT) Jim Manico
BSIMM: Confessions of a Software Security Alchemist(informIT) Tom Brennan - OWASP
BSIMM: Confessions of a Software SecurityAlchemist(informIT) Steven M. Christey
BSIMM: Confessions of a Software Security Alchemist(informIT) Gary McGraw
BSIMM: Confessions of a Software SecurityAlchemist(informIT) Gary McGraw
BSIMM: Confessions of a Software SecurityAlchemist(informIT) Gunnar Peterson
Announcing LAMN: Legion Against Meaningless certificatioNs Joe Teff

Saturday, 21 March

Announcing LAMN: Legion Against Meaningless certificatioNs Bret Watson
Announcing LAMN: Legion Against Meaningless certificatioNs Benjamin Tomhave
BSIMM: Confessions of a Software SecurityAlchemist(informIT) ljknews
BSIMM: Confessions of a Software SecurityAlchemist(informIT) Florian Weimer
Questions asked on job interview for application security/penetration testing job Matt Parsons
Announcing LAMN: Legion AgainstMeaningless certificatioNs Jim Manico
BSIMM: Confessions of a Software SecurityAlchemist(informIT) Jim Manico

Sunday, 22 March

Supply Chain Resiliency Project Assistance Mason Brown
Supply Chain Resiliency Project Assistance Gary McGraw
Supply Chain Resiliency Project Assistance Gadi Evron
BSIMM: Confessions of a Software SecurityAlchemist(informIT) Steven M. Christey
Questions asked on job interview for application security/penetration testing job Matt Parsons
Announcing LAMN: Legion Against Meaningless certificatioNs Prasad Shenoy
Supply Chain Resiliency Project Assistance Sammy Migues
Questions asked on job interview for application security/penetration testing job Arian J. Evans
Supply Chain Resiliency Project Assistance Wisseman, Stan [USA]

Monday, 23 March

Supply Chain Resiliency Project Assistance Dave Wichers
Announcing LAMN: Legion Against Meaningless certificatioNs Gary McGraw
BSIMM: Confessions of a Software SecurityAlchemist(informIT) Gary McGraw
Supply Chain Resiliency Project Assistance Mason Brown
The Importance of Type Safety Brad Andrews
The Importance of Type Safety Carl Alphonce
Supply Chain Resiliency Project Assistance Rohit Lists
The Importance of Type Safety AF
CSSLP Paco Hope
CSSLP Rob Floodeen
The Importance of Type Safety Brad Andrews
The Importance of Type Safety Jeremy Epstein

Tuesday, 24 March

CSSLP Bret Watson
BSIMM: Confessions of a Software SecurityAlchemist(informIT) Andy Steingruebl
BSIMM: Confessions of a Software SecurityAlchemist(informIT) John Steven

Wednesday, 25 March

SC-L Digest, Vol 5, Issue 50 Leverett, Eireann (GE Infra, Energy)
SAMM 1.0 Released! | OpenSAMM Kenneth Van Wyk
Online Secure Development Training? Brad Andrews
Online Secure Development Training? Tom Brennan
BSIMM: Confessions of a Software SecurityAlchemist(informIT) Gary McGraw
BSIMM: Confessions of a Software SecurityAlchemist(informIT) Andy Steingruebl
Online Secure Development Training? Dave Wichers
Online Secure Development Training? Brad Andrews
BSIMM: Confessions of a Software SecurityAlchemist(informIT) ljknews
SAMM 1.0 Released! | OpenSAMM Pravir Chandra
BSIMM: Confessions of a Software SecurityAlchemist(informIT) Andy Steingruebl
BSIMM: Confessions of a Software SecurityAlchemist(informIT) ljknews
OWASP Podcast #14 - Pravir Chandra and OpenSAMM Jim Manico

Thursday, 26 March

The Importance of Type Safety AF

Tuesday, 31 March

CfP: MetriSec 2009 Stephan Neuhaus
Metricon 4.0 CFP Gunnar Peterson