WebApp Sec mailing list archives

My review of 19 Sins


From: Andrew van der Stock <vanderaj () greebo net>
Date: Thu, 28 Jul 2005 15:49:10 -0700

Hi there,

Here's my review of the 19 Sins.

http://www.greebo.net/review_19sins.html

I was expecting Writing Secure Code++, and instead we got (in my view) the Top 19 of circa 2004.

Please take this on board when you read my review - it's a great book for PHP, Java and .NET programmers who want to reduce the risk of their application generally, or if you need to explain why you want to fix something to your boss (the book is clear and well written), but it's no Writing Secure Code.

Does anyone else have any reviews? I am distinctly biased (although I tried to be objective), so I'd love to hear about other reviews as well.

thanks,
Andrew


Current thread: