Secure Coding: by author

297 messages starting Feb 14 04 and ending Feb 26 04
Date index | Thread index | Author index


Alex Lambert

Re: Administrivia: Registration require sites (was Re: Secured Coding) Alex Lambert (Feb 14)

Alun Jones

RE: Re: Hypothetical design question Alun Jones (Feb 01)
RE: Hypothetical design question Alun Jones (Feb 04)
RE: Hypothetical design question Alun Jones (Feb 01)
RE: Interesting article ZDNet re informal software development quality Alun Jones (Jan 07)
RE: Re: Java sandboxing not used much Alun Jones (Mar 11)
RE: Hypothetical design question Alun Jones (Feb 02)
RE: Re: Hypothetical design question Alun Jones (Jan 30)
RE: (whimsy) Bug-free software Alun Jones (Feb 07)
RE: Interesting article ZDNet re informal software development quality Alun Jones (Jan 08)
RE: Opinion re an interesting article on Linux security in Linux Journal Alun Jones (Mar 10)
RE: Standards for security Alun Jones (Jan 13)
RE: Any software security news from the RSA conference? Alun Jones (Mar 01)
RE: Hypothetical design question Alun Jones (Feb 04)
RE: Hypothetical design question Alun Jones (Jan 28)

Andreas Gaupmann

Re: Installation and setup of secure applications Andreas Gaupmann (Jan 20)

Andreas Saurwein

Re: User Education Tool? Andreas Saurwein (Mar 04)
RE: Bug-free software (was: Re rant about virii on VMS...) Andreas Saurwein (Feb 05)
Re: Re rant about virii on VMS... Andreas Saurwein (Feb 04)
Re: Hypothetical design question Andreas Saurwein (Jan 28)
RE: Bug-free software Andreas Saurwein (Feb 05)
Re: Hypothetical design question Andreas Saurwein (Jan 28)
RE: Hypothetical design question Andreas Saurwein (Jan 28)
Re: Installation and setup of secure applications Andreas Saurwein (Jan 20)
RE: Bug-free software (was: Re rant about viruses on VMS...) Andreas Saurwein (Feb 05)
User Education Tool? Andreas Saurwein (Mar 04)

Andreas Sikkema

RE: Re: Application Sandboxing, communication limiting, etc. Andreas Sikkema (Mar 11)

Anil John

Microsoft DevDays 2004 Web Development Track: Focus on Security Anil John (Feb 23)

Aryeh Goretsky

[OT] Free Windows Security Update CD Aryeh Goretsky (Feb 19)

avi

RBAC question avi (Feb 15)

Ben Corneau

RE: Re: Hypothetical design question Ben Corneau (Jan 31)

Bill Cheswick

Re: Opinion re an interesting article on Linux security in Linux Journal Bill Cheswick (Mar 10)
Re: Any software security news from the RSA conference? Bill Cheswick (Feb 26)
Re: Java sandboxing not used much Bill Cheswick (Mar 11)

Bill Eddins

RE: ACL (access control lists) generic design questions Bill Eddins (Feb 27)

Brad Arkin

RE: Is developer education a lost cause? Brad Arkin (Feb 04)

Brett Hutley

Re: Personal Firewall Day Brett Hutley (Jan 16)
Re: Re: SC-L-DIGEST V1 #9 Brett Hutley (Jan 12)
Re: MISRA C (was: Industry support groups that foster secure/quality coding practices) Brett Hutley (Jan 13)
Re: Security Standard Branding & Expectation Checklists Brett Hutley (Jan 08)

Brian Hetrick

Re: Interesting article ZDNet re informal software development quality Brian Hetrick (Jan 07)

Brian Utterback

Re: Interesting article ZDNet re informal software development quality Brian Utterback (Jan 09)

Bruce Ediger

Re: Interesting article ZDNet re informal software development quality Bruce Ediger (Jan 09)
Re: Interesting article ZDNet re informal software development quality Bruce Ediger (Jan 07)

Burak DAYIOGLU

Re: Installation and setup of secure applications Burak DAYIOGLU (Jan 20)

Carl G. Alphonce

Re: Interesting article ZDNet re informal software development quality Carl G. Alphonce (Jan 08)
RE: Re: Hypothetical design question Carl G. Alphonce (Jan 30)

carolyn . ryll

Re: Installation and setup of secure applications carolyn . ryll (Jan 20)

Christoph Fischer

Re: Non-English reader Christoph Fischer (Mar 29)

Chris Wysopal

Re: Looking for good software security stats Chris Wysopal (Mar 03)
Re: Is developer education a lost cause? Chris Wysopal (Jan 23)
Re: Secured Coding Chris Wysopal (Feb 12)

Crispin Cowan

Re: Interesting article ZDNet re informal software development quality Crispin Cowan (Jan 09)
Re: enough OS flames Crispin Cowan (Feb 05)
Re: Interesting article ZDNet re informal software development quality Crispin Cowan (Jan 06)
Re: Re: Application Sandboxing, communication limiting, etc. Crispin Cowan (Mar 14)
Re: Interesting article ZDNet re informal software development quality Crispin Cowan (Jan 06)
Re: Interesting article ZDNet re informal software development quality Crispin Cowan (Jan 08)
Re: Homeland security Request Crispin Cowan (Feb 27)
Re: MISRA C Crispin Cowan (Jan 02)
Re: Hypothetical design question Crispin Cowan (Feb 05)
Re: Request for SC conferences Crispin Cowan (Feb 18)
Re: Administrivia & Request: Aloha, the moderator is back Crispin Cowan (Mar 29)
Re: Open source fertile ground for foul play? Crispin Cowan (Feb 15)
Re: Hypothetical design question Crispin Cowan (Feb 04)
Re: Security Standard Branding & Expectation Checklists Crispin Cowan (Jan 09)
Re: Security Standard Branding & Expectation Checklists Crispin Cowan (Jan 08)
Re: Re: Application Sandboxing, communication limiting, etc. Crispin Cowan (Mar 16)
Re: Re: Application Sandboxing, communication limiting, etc. Crispin Cowan (Mar 13)

Damir Rajnovic

Re: Installation and setup of secure applications Damir Rajnovic (Jan 21)

Danny Smith

Re: Request for SC conferences Danny Smith (Feb 18)

Dave Aronson

CORRECTION: URL correction re jobs Dave Aronson (Jan 16)
Humor: Re: Any software security news from the RSA conference? Dave Aronson (Feb 27)
Administrivia: Registration require sites (was Re: Secured Coding) Dave Aronson (Feb 13)
Re: User Education Tool? Dave Aronson (Mar 05)
JOBS: Secure Software Inc. seeks developers, auditors, and VP of Prof. Svcs. Dave Aronson (Jan 16)
Re: User Education Tool? Dave Aronson (Mar 04)
Re: Hypothetical design question Dave Aronson (Jan 28)

Dave Paris

RE: Hypothetical design question Dave Paris (Jan 28)
RE: Code signing and Java Web Start Dave Paris (Feb 26)
RE: virtual server - security Dave Paris (Mar 31)
RE: virtual server - security Dave Paris (Mar 31)
RE: Hypothetical design question Dave Paris (Jan 28)
RE: Hypothetical design question Dave Paris (Jan 29)
RE: Any software security news from the RSA conference? Dave Paris (Feb 27)

David A. Wheeler

Re: SC-L-DIGEST V1 #9 David A. Wheeler (Jan 09)
Re: Hypothetical design question David A. Wheeler (Jan 29)
Processes HAVE been discussed to counter source-control archive attacks David A. Wheeler (Jan 09)

David Crocker

RE: (whimsy) Bug-free software David Crocker (Feb 07)
RE: MISRA C (was: Industry support groups that foster secure/quality coding practices) David Crocker (Jan 02)
RE: Security Standard Branding & Expectation Checklists David Crocker (Jan 10)
RE: MISRA C (was: Industry support groups that foster secure/quality coding practices) David Crocker (Jan 01)
RE: Bug-free software (was: Re rant about virii on VMS...) David Crocker (Feb 05)
RE: Bug-free software (was: Re rant about viruses on VMS...) David Crocker (Feb 05)
RE: Bug-free software (was: Re rant about viruses on VMS...) David Crocker (Feb 05)
RE: MISRA C (was: Industry support groups that foster secure/quality coding practices) David Crocker (Jan 01)
RE: MISRA C (was: Industry support groups that foster secure/quality coding practices) David Crocker (Jan 01)
RE: Interesting article ZDNet re informal software development quality David Crocker (Jan 06)
RE: Security Standard Branding & Expectation Checklists David Crocker (Jan 10)
RE: Hypothetical design question David Crocker (Jan 30)
RE: (whimsy) Bug-free software David Crocker (Feb 06)

David Harmon

Re: Hypothetical design question David Harmon (Jan 30)
Postscript to my long HDQ post. David Harmon (Feb 01)

der Mouse

Re: Personal Firewall Day der Mouse (Jan 15)
Re: Hypothetical design question der Mouse (Jan 30)
Re: Bug-free software (was: Re rant about viruses on VMS...) der Mouse (Feb 05)
Re: Opinion re an interesting article on Linux security in Linux Journal der Mouse (Mar 10)
Re: Is developer education a lost cause? der Mouse (Jan 31)
Re: Re: Hypothetical design question der Mouse (Jan 31)
Re: Installation and setup of secure applications der Mouse (Jan 20)
Re: Re rant about virii on VMS... der Mouse (Feb 03)
Re: Hypothetical design question der Mouse (Jan 31)
Re: Bug-free software (was: Re rant about viruses on VMS...) der Mouse (Feb 05)
Re: Re: Hypothetical design question der Mouse (Jan 29)

dtalk-ml

RE: Hypothetical design question dtalk-ml (Feb 04)
RE: Hypothetical design question dtalk-ml (Feb 04)

Erik Anderson

RE: How C# does fit the bill? (was: MISRA C) Erik Anderson (Jan 02)

Erik van Konijnenburg

Re: Installation and setup of secure applications Erik van Konijnenburg (Jan 20)

Fabien

Non-English reader Fabien (Mar 29)

Fernando Schapachnik

Re: Administrivia & Request: Aloha, the moderator is back Fernando Schapachnik (Mar 29)
Re: Hypothetical design question Fernando Schapachnik (Jan 30)
Re: virtual server - security Fernando Schapachnik (Mar 31)

Frank Peters

Re: virtual server - security Frank Peters (Mar 31)

Gary McGraw

Enough about software security already! Gary McGraw (Feb 19)
CFP: Attacking systems Gary McGraw (Feb 19)
RE: On "application security" Gary McGraw (Feb 20)
RE: Administrivia & Request: Aloha, the moderator is back Gary McGraw (Mar 29)
Book list Gary McGraw (Mar 08)
Re: Is developer education a lost cause? Gary McGraw (Jan 23)
On "application security" Gary McGraw (Feb 19)
More software security jobs Gary McGraw (Jan 16)
RE: Code signing and Java Web Start Gary McGraw (Feb 26)
RE: Any software security news from the RSA conference? Gary McGraw (Feb 26)
New IEEE Security & Privacy Department: help wanted Gary McGraw (Feb 17)
RE: Looking for good software security stats Gary McGraw (Mar 08)

Gene Spafford

Standards for security Gene Spafford (Jan 11)

George Capehart

Re: Processes HAVE been discussed to counter source-control archive attacks George Capehart (Jan 15)
Re: Interesting article ZDNet re informal software development quality George Capehart (Jan 10)
Re: Interesting article ZDNet re informal software development quality George Capehart (Jan 06)
Re: Interesting article ZDNet re informal software development quality George Capehart (Jan 08)
Re: User Education Tool? George Capehart (Mar 04)
Re: RBAC question George Capehart (Feb 16)
Re: Interesting article ZDNet re informal software development quality George Capehart (Jan 08)
Re: Interesting article ZDNet re informal software development quality George Capehart (Jan 07)
Re: Is developer education a lost cause? George Capehart (Jan 23)

Giri, Sandeep

RE: Audit report format Giri, Sandeep (Jan 22)
RE: Is developer education a lost cause? Giri, Sandeep (Jan 23)
Audit report format Giri, Sandeep (Jan 20)

Glenn and Mary Everhart

Re: ACL (access control lists) generic design questions Glenn and Mary Everhart (Feb 27)
Re rant about virii on VMS... Glenn and Mary Everhart (Feb 03)
Re: Hypothetical design question Glenn and Mary Everhart (Jan 30)
Re: RBAC question Glenn and Mary Everhart (Feb 15)

Greenarrow 1

Microsoft SUS 2.0 Greenarrow 1 (Feb 12)
Secured Coding Greenarrow 1 (Feb 12)
New Platform and OS Greenarrow 1 (Mar 16)
Re: Hypothetical design question Greenarrow 1 (Jan 30)
Developement Education Greenarrow 1 (Jan 23)
Re: personalFirewallDay Greenarrow 1 (Jan 16)
Re: Looking for good software security stats Greenarrow 1 (Mar 04)
Homeland security Request Greenarrow 1 (Feb 24)

Jared W. Robinson

Re: Security Standard Branding & Expectation Checklists Jared W. Robinson (Jan 08)
Re: Re: Application Sandboxing, communication limiting, etc. Jared W. Robinson (Mar 16)
Re: Java sandboxing not used much Jared W. Robinson (Mar 11)
Re: Comparison of SubDomain, SELinux and systrace Jared W. Robinson (Mar 16)
Security Standard Branding & Expectation Checklists Jared W. Robinson (Jan 07)
Re: Java sandboxing not used much Jared W. Robinson (Mar 11)
Re: Code Signing Processes Jared W. Robinson (Jan 31)
Re: Application Sandboxing, communication limiting, etc. Jared W. Robinson (Mar 10)
Re: Re: Application Sandboxing, communication limiting, etc. Jared W. Robinson (Mar 16)

Jason Wilcox

RE: Hypothetical design question Jason Wilcox (Feb 03)
RE: Is developer education a lost cause? Jason Wilcox (Jan 22)

Jean-Francois Poirier

Installation and setup of secure applications Jean-Francois Poirier (Jan 20)
Re: Open source fertile ground for foul play? Jean-Francois Poirier (Feb 13)

jeff . williams

Re: Is developer education a lost cause? jeff . williams (Feb 02)

Jeff Williams @ Aspect

Re: Security Standard Branding & Expectation Checklists Jeff Williams @ Aspect (Jan 11)
Re: Standards for security Jeff Williams @ Aspect (Jan 12)

Jeremy Epstein

RE: Is developer education a lost cause? Jeremy Epstein (Feb 02)
RE: Hypothetical design question Jeremy Epstein (Jan 30)
RE: Is developer education a lost cause? Jeremy Epstein (Jan 30)
RE: virtual server - security Jeremy Epstein (Mar 31)
RE: Re: Java sandboxing not used much Jeremy Epstein (Mar 11)

jjchryan

RE: Secured Coding jjchryan (Feb 12)

jnf

RE: virtual server - security jnf (Mar 31)
Re: Humor: Secure coding in the comics (Foxtrot) jnf (Mar 04)
RE: Administrivia & Request: Aloha, the moderator is back jnf (Mar 30)
Re: Any software security news from the RSA conference? jnf (Feb 27)
Re: Administrivia & Request: Aloha, the moderator is back jnf (Mar 29)
Re: Administrivia & Request: Aloha, the moderator is back jnf (Mar 30)

Joe Teff

Re: Is developer education a lost cause? Joe Teff (Jan 22)

Jose Nazario

Re: Re: Application Sandboxing, communication limiting, etc. Jose Nazario (Mar 10)
interesting presentation Jose Nazario (Mar 02)
Re: Installation and setup of secure applications Jose Nazario (Jan 20)
Re: Re: Hypothetical design question Jose Nazario (Jan 30)

Julie Ryan

Looking for Experts Julie Ryan (Mar 29)

Ken Goldman

Re: Hypothetical design question Ken Goldman (Jan 29)
Re: SC-L-DIGEST V1 #37 Ken Goldman (Feb 27)

Kenneth R. van Wyk

Open source fertile ground for foul play? Kenneth R. van Wyk (Feb 12)
Re: On "application security" Kenneth R. van Wyk (Feb 20)
RSS security issues and useful reading Kenneth R. van Wyk (Feb 11)
Re: Open source fertile ground for foul play? Kenneth R. van Wyk (Feb 15)
Humor: Secure coding in the comics (Foxtrot) Kenneth R. van Wyk (Mar 04)
Installation and setup of secure applications Kenneth R. van Wyk (Jan 20)
FYI: A couple OWASP updates available Kenneth R. van Wyk (Feb 03)
Hypothetical design question Kenneth R. van Wyk (Jan 27)
Re: Re: Hypothetical design question Kenneth R. van Wyk (Jan 29)
ANNOUNCE: Two upcoming security events Kenneth R. van Wyk (Feb 12)
Any software security news from the RSA conference? Kenneth R. van Wyk (Feb 25)
List of SC conferences (v 1.0) Kenneth R. van Wyk (Feb 23)
Re: Interesting article ZDNet re informal software development quality Kenneth R. van Wyk (Jan 06)
Administrivia & Request: Aloha, the moderator is back Kenneth R. van Wyk (Mar 27)
Is developer education a lost cause? Kenneth R. van Wyk (Jan 22)
Re: Administrivia: RSS/RDF feed for SC-L in the works Kenneth R. van Wyk (Feb 16)
Announce: "Integer Handling with the C++ SafeInt Class" Kenneth R. van Wyk (Jan 28)
Re: Hypothetical design question Kenneth R. van Wyk (Jan 29)
Administrivia: RSS/RDF feed for SC-L in the works Kenneth R. van Wyk (Feb 13)
Consortium to Target Web App Security Kenneth R. van Wyk (Feb 18)
Request for SC conferences Kenneth R. van Wyk (Feb 17)
Opinion re an interesting article on Linux security in Linux Journal Kenneth R. van Wyk (Mar 09)
Re: Re: Java sandboxing not used much Kenneth R. van Wyk (Mar 11)
Announce: An Introduction To SQL Injection Attacks For Oracle Developers Kenneth R. van Wyk (Jan 24)
Interesting article ZDNet re informal software development quality Kenneth R. van Wyk (Jan 05)
Looking for good software security stats Kenneth R. van Wyk (Mar 03)
Administrivia: Opinion polls? (recursive...) Kenneth R. van Wyk (Feb 05)
Security improvements in Java JSE 1.5 beta Kenneth R. van Wyk (Feb 06)
Administrivia: SC-L archives at virus.org Kenneth R. van Wyk (Jan 21)
Re: Code signing and Java Web Start Kenneth R. van Wyk (Feb 26)

Kim Gräsman

RE: ACL (access control lists) generic design questions (oh, and Reply-To) Kim Gräsman (Mar 01)

ljknews

Re: Opinion re an interesting article on Linux security in Linux Journal ljknews (Mar 10)
RE: Hypothetical design question ljknews (Jan 28)
RE: Hypothetical design question ljknews (Jan 29)
RE: Hypothetical design question ljknews (Feb 01)
RE: Hypothetical design question ljknews (Feb 03)
Re: Application Sandboxing, communication limiting, etc. ljknews (Mar 10)
RE: Any software security news from the RSA conference? ljknews (Mar 01)
Re: Any software security news from the RSA conference? ljknews (Feb 27)
RE: MISRA C (was: Industry support groups that foster secure/quality coding practices) ljknews (Jan 01)
RE: Security Standard Branding & Expectation Checklists ljknews (Jan 10)

Louis Solomon [SteelBytes]

Re: Hypothetical design question Louis Solomon [SteelBytes] (Feb 02)
Re: Re: Java sandboxing not used much Louis Solomon [SteelBytes] (Mar 15)
Re: virtual server - security Louis Solomon [SteelBytes] (Mar 31)
enough OS flames Louis Solomon [SteelBytes] (Feb 05)
Re: Hypothetical design question Louis Solomon [SteelBytes] (Feb 03)

Mark Curphey

Re: Any software security news from the RSA conference? Mark Curphey (Feb 26)
Re: Any software security news from the RSA conference? Mark Curphey (Feb 26)

Mark D. Rockman

Re: Any software security news from the RSA conference? Mark D. Rockman (Mar 02)

Mark Graff

RE: Bug-free software (was: Re rant about virii on VMS...) Mark Graff (Feb 07)

Martin Stricker

Re: Opinion re an interesting article on Linux security in Linux Journal Martin Stricker (Mar 11)
Re: Re: Application Sandboxing, communication limiting, etc. Martin Stricker (Mar 11)

Michael S Hines

RE: Is developer education a lost cause? Michael S Hines (Jan 23)
RE: Hypothetical design question Michael S Hines (Jan 28)
FW: Interesting article on Slashdot! Undertanding the Technology Michael S Hines (Feb 06)
RE: Re: Hypothetical design question Michael S Hines (Jan 30)
RE: Hypothetical design question Michael S Hines (Feb 02)
RE: Opinion re an interesting article on Linux security in Linux Journal Michael S Hines (Mar 09)

Michal Zalewski

Re: Opinion re an interesting article on Linux security in Linux Journal Michal Zalewski (Mar 09)

Mona Wong-Barnum

Code signing and Java Web Start Mona Wong-Barnum (Feb 25)

M Taylor

Re: Administrivia & Request: Aloha, the moderator is back M Taylor (Mar 30)

Nick Lothian

RE: Hypothetical design question Nick Lothian (Jan 28)
RE: Interesting article ZDNet re informal software develop ment quality Nick Lothian (Jan 07)
RE: Re: Hypothetical design question Nick Lothian (Jan 29)
RE: Hypothetical design question Nick Lothian (Jan 28)
RE: Hypothetical design question Nick Lothian (Jan 29)
RE: Opinion re an interesting article on Linux security in Linux Journal Nick Lothian (Mar 10)
RE: Standards for security Nick Lothian (Jan 13)

Paco Hope

Re: Hypothetical design question Paco Hope (Jan 28)
Re: virtual server - IPS Paco Hope (Mar 31)
Re: Hypothetical design question Paco Hope (Jan 29)
Re: Hypothetical design question Paco Hope (Jan 27)
Re: virtual server - use jail(8) on FreeBSD Paco Hope (Mar 31)

Pascal Meunier

Re: Is developer education a lost cause? Pascal Meunier (Jan 23)
Re: Looking for good software security stats Pascal Meunier (Mar 08)

Peter G. Neumann

Re: ACL (access control lists) generic design questions Peter G. Neumann (Feb 26)

Richard Moore

Re: ACL (access control lists) generic design questions Richard Moore (Feb 26)
Re: Opinion re an interesting article on Linux security in Linux Journal Richard Moore (Mar 10)
Re: Is developer education a lost cause? Richard Moore (Jan 23)
Re: Processes HAVE been discussed to counter source-control archive attacks Richard Moore (Jan 15)
Re: Opinion re an interesting article on Linux security in Linux Journal Richard Moore (Mar 09)

Robert Shields

RE: Is developer education a lost cause? Robert Shields (Jan 23)
RE: Hypothetical design question Robert Shields (Jan 28)
RE: Is developer education a lost cause? Robert Shields (Jan 23)

Ryan Russell

Re: Opinion re an interesting article on Linux security in Linux Journal Ryan Russell (Mar 10)

Scott Nemec

Re: virtual server - security Scott Nemec (Mar 30)

Serban Gh. Ghita

virtual server - security Serban Gh. Ghita (Mar 30)
virtual servers Serban Gh. Ghita (Feb 03)

Shea, Brian A

RE: Hypothetical design question Shea, Brian A (Jan 31)
RE: ACL (access control lists) generic design questions Shea, Brian A (Feb 26)

Steve Litt

Re: MISRA C (was: Industry support groups that foster secure/quality coding practices) Steve Litt (Jan 01)
Re: MISRA C (was: Industry support groups that foster secure/quality coding practices) Steve Litt (Jan 01)

Tegels, Kent

Code Signing Processes Tegels, Kent (Jan 29)
RE: How C# does fit the bill? (was: MISRA C) Tegels, Kent (Jan 02)
Personal Firewall Day Tegels, Kent (Jan 15)
RE: Code Signing Processes Tegels, Kent (Feb 02)

Terrence Enger

Re: (whimsy) Bug-free software Terrence Enger (Feb 06)

Thor Larholm

RE: Homeland security Request Thor Larholm (Feb 24)

Tim Bolton

RE: Administrivia & Request: Aloha, the moderator is back Tim Bolton (Mar 30)

Werner Koch

Re: Processes HAVE been discussed to counter source-control archive attacks Werner Koch (Jan 15)

William Herrera

ACL (access control lists) generic design questions William Herrera (Feb 26)