Secure Coding: by author

183 messages starting Mar 26 09 and ending Mar 22 09
Date index | Thread index | Author index


AF

The Importance of Type Safety AF (Mar 26)
The Importance of Type Safety AF (Mar 23)

Andy Steingruebl

BSIMM: Confessions of a Software SecurityAlchemist(informIT) Andy Steingruebl (Mar 24)
Security in QA is more than exploits Andy Steingruebl (Feb 04)
Security in QA is more than exploits Andy Steingruebl (Feb 05)
BSIMM: Confessions of a Software SecurityAlchemist(informIT) Andy Steingruebl (Mar 25)
BSIMM: Confessions of a Software SecurityAlchemist(informIT) Andy Steingruebl (Mar 25)

Arian J. Evans

Questions asked on job interview for application security/penetration testing job Arian J. Evans (Mar 22)
SANS/CWE Top 25: "The New Standard" for Webappsec Arian J. Evans (Jan 16)
SDL / Secure Coding and impact on CWE / Top 25 Arian J. Evans (Jan 28)
SANS/CWE Top 25: "The New Standard" for Webappsec Arian J. Evans (Jan 19)

Benjamin Tomhave

Positive impact of an SSG Benjamin Tomhave (Mar 11)
Announcing LAMN: Legion Against Meaningless certificatioNs Benjamin Tomhave (Mar 21)
BSIMM: Confessions of a Software Security Alchemist(informIT) Benjamin Tomhave (Mar 20)
BSIMM: Confessions of a Software Security Alchemist(informIT) Benjamin Tomhave (Mar 20)
Positive impact of an SSG Benjamin Tomhave (Mar 11)
Announcing LAMN: Legion Against Meaningless certificatioNs Benjamin Tomhave (Mar 19)
Positive impact of an SSG Benjamin Tomhave (Mar 11)
BSIMM: Confessions of a Software Security Alchemist (informIT) Benjamin Tomhave (Mar 19)

Bennett, Jason

Conditional Compile statements-- coding standards, and code review Bennett, Jason (Feb 16)

Brad Andrews

The Importance of Type Safety Brad Andrews (Mar 23)
Online Secure Development Training? Brad Andrews (Mar 25)
The Importance of Type Safety Brad Andrews (Mar 23)
Online Secure Development Training? Brad Andrews (Mar 25)

Bret Watson

CSSLP Bret Watson (Mar 24)
Announcing LAMN: Legion Against Meaningless certificatioNs Bret Watson (Mar 21)

Brian Chess

Positive impact of an SSG Brian Chess (Mar 11)
Call for papers: Programming Languages and Analysis for Security (PLAS) Brian Chess (Mar 03)
Some Interesting Topics arising from the SANS/CWE Top 25 Brian Chess (Jan 14)
Positive impact of an SSG Brian Chess (Mar 11)

bugtraq at cgisecurity.net

Security in QA is more than exploits bugtraq at cgisecurity.net (Feb 04)

Carl Alphonce

The Importance of Type Safety Carl Alphonce (Mar 23)

Chris Wysopal

SANS Institute - CWE/SANS TOP 25 Most Dangerous ProgrammingErrors Chris Wysopal (Jan 13)

Dave Wichers

Online Secure Development Training? Dave Wichers (Mar 25)
Supply Chain Resiliency Project Assistance Dave Wichers (Mar 23)

David Crocker

Conditional Compile statements-- coding standards, and code review David Crocker (Feb 22)

Florian Weimer

BSIMM: Confessions of a Software SecurityAlchemist(informIT) Florian Weimer (Mar 21)
Some Interesting Topics arising from the SANS/CWE Top 25 Florian Weimer (Jan 14)
Some Interesting Topics arising from the SANS/CWE Top 25 Florian Weimer (Jan 14)

Gadi Evron

Supply Chain Resiliency Project Assistance Gadi Evron (Mar 22)

Gary McGraw

BSIMM: Confessions of a Software Security Alchemist (informIT) Gary McGraw (Mar 18)
Announcing LAMN: Legion Against Meaningless certificatioNs Gary McGraw (Mar 23)
BSIMM lives Gary McGraw (Mar 04)
informIT: nine things everybody does Gary McGraw (Feb 10)
Politics, cybersecurity, and software Gary McGraw (Mar 18)
SANS Institute - CWE/SANS TOP 25 Most Dangerous Programming Errors Gary McGraw (Jan 14)
BSIMM: Confessions of a Software SecurityAlchemist(informIT) Gary McGraw (Mar 25)
New Podcast: Reality Check Security Podcast goes live Gary McGraw (Jan 06)
Silver Bullet 35: Daniel Suarez Gary McGraw (Feb 23)
BSIMM: Confessions of a Software Security Alchemist (informIT) Gary McGraw (Mar 19)
Silver Bullet: Gunnar Peterson (transcript posted) Gary McGraw (Jan 19)
BSIMM: Confessions of a Software Security Alchemist(informIT) Gary McGraw (Mar 19)
BSIMM: Confessions of a Software Security Alchemist(informIT) Gary McGraw (Mar 20)
Silver Bullet: McGovern interviews McGraw Gary McGraw (Mar 18)
Silver Bullet 34: Bill Brenner Gary McGraw (Jan 14)
BSIMM: Confessions of a Software Security Alchemist (informIT) Gary McGraw (Mar 19)
OWASP interviews McGraw (oh my) Gary McGraw (Jan 26)
SANS Institute - CWE/SANS TOP 25 Most Dangerous Programming Errors Gary McGraw (Jan 15)
Reality Check: EMC Eric Baize Gary McGraw (Mar 03)
Supply Chain Resiliency Project Assistance Gary McGraw (Mar 22)
SANS Institute - CWE/SANS TOP 25 Most Dangerous Programming Errors Gary McGraw (Jan 15)
BSIMM: Confessions of a Software Security Alchemist (informIT) Gary McGraw (Mar 19)
Gartner covers software security Gary McGraw (Mar 10)
Reality Check: EMC Eric Baize Gary McGraw (Mar 03)
Reality Check: Jim Routh, DTCC Gary McGraw (Feb 02)
SANS Institute - CWE/SANS TOP 25 Most Dangerous Programming Errors Gary McGraw (Jan 14)
BSIMM: Confessions of a Software Security Alchemist (informIT) Gary McGraw (Mar 18)
BSIMM: Confessions of a Software SecurityAlchemist(informIT) Gary McGraw (Mar 20)
BSIMM: Confessions of a Software SecurityAlchemist(informIT) Gary McGraw (Mar 23)
SANS Institute - CWE/SANS TOP 25 Most Dangerous ProgrammingErrors Gary McGraw (Jan 13)
BSIMM: Confessions of a Software Security Alchemist (informIT) Gary McGraw (Mar 18)
OWASP interviews McGraw (oh my) Gary McGraw (Jan 26)
SANS List etc.. Gary McGraw (Jan 15)
SANS List etc.. Gary McGraw (Jan 15)
SANS Institute - CWE/SANS TOP 25 Most Dangerous ProgrammingErrors Gary McGraw (Jan 14)
BSIMM: Confessions of a Software Security Alchemist (informIT) Gary McGraw (Mar 19)

Goertzel, Karen [USA]

more relevant certifications Goertzel, Karen [USA] (Mar 20)
Announcing LAMN: Legion Against MeaninglesscertificatioNs Goertzel, Karen [USA] (Mar 19)
BSIMM: Confessions of a Software Security Alchemist(informIT) Goertzel, Karen [USA] (Mar 20)

Greg Beeley

Some Interesting Topics arising from the SANS/CWE Top 25 Greg Beeley (Jan 13)

Gunnar Peterson

Metricon 4.0 CFP Gunnar Peterson (Mar 31)
BSIMM: Confessions of a Software SecurityAlchemist(informIT) Gunnar Peterson (Mar 20)

Ivan Ristic

Some Interesting Topics arising from the SANS/CWE Top 25 Ivan Ristic (Jan 14)
Some Interesting Topics arising from the SANS/CWE Top 25 Ivan Ristic (Jan 15)

Jason Grembi

Contents of SC-L digest.. Jason Grembi (Jan 15)

Jeremy Epstein

Announcing LAMN: Legion Against Meaningless certificatioNs Jeremy Epstein (Mar 19)
Announcing LAMN: Legion Against Meaningless certificatioNs Jeremy Epstein (Mar 18)
The Importance of Type Safety Jeremy Epstein (Mar 23)

Jim Manico

BSIMM: Confessions of a Software Security Alchemist(informIT) Jim Manico (Mar 20)
OWASP Podcast #10 with Ken van Wyk Jim Manico (Mar 04)
BSIMM: Confessions of a Software Security Alchemist (informIT) Jim Manico (Mar 19)
OWASP Podcast #11 with Steve Christey and Bob Martin Jim Manico (Mar 04)
OWASP Podcast #14 - Pravir Chandra and OpenSAMM Jim Manico (Mar 25)
BSIMM: Confessions of a Software Security Alchemist (informIT) Jim Manico (Mar 19)
Some Interesting Topics arising from the SANS/CWE Top 25 Jim Manico (Jan 14)
BSIMM: Confessions of a Software SecurityAlchemist(informIT) Jim Manico (Mar 21)
OWASP Podcast #6 Jim Manico (Feb 05)
Rigged podcasts can leak your iTunes username/password |Zero Day | ZDNet.com Jim Manico (Mar 12)
BSIMM: Confessions of a Software Security Alchemist (informIT) Jim Manico (Mar 19)
Announcing LAMN: Legion AgainstMeaningless certificatioNs Jim Manico (Mar 21)

Joe Teff

Announcing LAMN: Legion Against Meaningless certificatioNs Joe Teff (Mar 20)
Some Interesting Topics arising from the SANS/CWE Top 25 Joe Teff (Jan 15)

Johan Peeters

Some Interesting Topics arising from the SANS/CWE Top 25 Johan Peeters (Jan 13)
SecAppDev 2009 Johan Peeters (Jan 04)
Some Interesting Topics arising from the SANS/CWE Top 25 Johan Peeters (Jan 14)

John Steven

BSIMM: Confessions of a Software Security Alchemist (informIT) John Steven (Mar 20)
BSIMM: Confessions of a Software Security Alchemist (informIT) John Steven (Mar 19)
BSIMM: Confessions of a Software SecurityAlchemist(informIT) John Steven (Mar 24)

Kenneth Van Wyk

SANS Institute - CWE/SANS TOP 25 Most Dangerous Programming Errors Kenneth Van Wyk (Jan 12)
Web Applications: Achilles' Heel Of Corporate Security -- Security -- InformationWeek Kenneth Van Wyk (Feb 03)
Rigged podcasts can leak your iTunes username/password | Zero Day | ZDNet.com Kenneth Van Wyk (Mar 12)
Reality Check: EMC Eric Baize Kenneth Van Wyk (Mar 03)
InternetNews Realtime IT News - New York Plans Application Security Program Kenneth Van Wyk (Jan 14)
SAMM 1.0 Released! | OpenSAMM Kenneth Van Wyk (Mar 25)
OWASP interviews McGraw (oh my) Kenneth Van Wyk (Jan 26)

kowsik

BSIMM: Confessions of a Software Security Alchemist (informIT) kowsik (Mar 19)

Larry Koved

CFP: W2SP 2009: Web 2.0 Security and Privacy 2009 Larry Koved (Jan 19)
CFP: W2SP 2009: Web 2.0 Security and Privacy 2009 - submission deadline is this Friday Larry Koved (Mar 02)

Leverett, Eireann (GE Infra, Energy)

SC-L Digest, Vol 5, Issue 50 Leverett, Eireann (GE Infra, Energy) (Mar 25)

ljknews

BSIMM: Confessions of a Software SecurityAlchemist(informIT) ljknews (Mar 21)
BSIMM: Confessions of a Software SecurityAlchemist(informIT) ljknews (Mar 25)
BSIMM: Confessions of a Software SecurityAlchemist(informIT) ljknews (Mar 25)

Mason Brown

Supply Chain Resiliency Project Assistance Mason Brown (Mar 23)
Supply Chain Resiliency Project Assistance Mason Brown (Mar 22)

Matt Bishop

SANS List etc.. Matt Bishop (Jan 15)

Matt Parsons

Questions asked on job interview for application security/penetration testing job Matt Parsons (Mar 21)
Questions asked on job interview for application security/penetration testing job Matt Parsons (Mar 22)

McGovern, James F (HTSC, IT)

OWASP interviews McGraw (oh my) McGovern, James F (HTSC, IT) (Jan 26)

Paco Hope

Security in QA is more than exploits Paco Hope (Feb 04)
Announcing LAMN: Legion Against Meaningless certificatioNs Paco Hope (Mar 19)
CSSLP Paco Hope (Mar 23)
Security in QA is more than exploits Paco Hope (Feb 04)

Prasad Shenoy

Announcing LAMN: Legion Against Meaningless certificatioNs Prasad Shenoy (Mar 22)

Pravir Chandra

Positive impact of an SSG Pravir Chandra (Mar 11)
Positive impact of an SSG Pravir Chandra (Mar 11)
Positive impact of an SSG Pravir Chandra (Mar 10)
BSIMM: Confessions of a Software SecurityAlchemist(informIT) Pravir Chandra (Mar 20)
SANS Institute - CWE/SANS TOP 25 Most Dangerous Programming Errors Pravir Chandra (Jan 15)
SAMM 1.0 Released! | OpenSAMM Pravir Chandra (Mar 25)
Positive impact of an SSG Pravir Chandra (Mar 11)
Relationship between BSIMM and SAMM Pravir Chandra (Mar 06)

robert at webappsec.org

Security metrics on flaws detected during architectural review? robert at webappsec.org (Jan 22)
Application Security Vendors Need Help With Reporting robert at webappsec.org (Feb 09)
The security industry needs to re-align its training expectations for QA robert at webappsec.org (Feb 02)

Robert Seacord

Conditional Compile statements-- coding standards, and code review Robert Seacord (Feb 13)

Rob Floodeen

CSSLP Rob Floodeen (Mar 23)

Rohit Lists

Supply Chain Resiliency Project Assistance Rohit Lists (Mar 23)
Mitigating XSS in existing JEE apps with AOP - Proof of Concept Rohit Lists (Jan 13)

Sammy Migues

Positive impact of an SSG Sammy Migues (Mar 11)
Positive impact of an SSG Sammy Migues (Mar 10)
Positive impact of an SSG Sammy Migues (Mar 10)
Supply Chain Resiliency Project Assistance Sammy Migues (Mar 22)

SC-L Reader Dave Aronson

more relevant certifications SC-L Reader Dave Aronson (Mar 20)
more relevant certifications SC-L Reader Dave Aronson (Mar 20)
Announcing LAMN: Legion Against Meaningless certificatioNs SC-L Reader Dave Aronson (Mar 19)

Sebastien Deleersnyder

Fwd: CALL FOR PRESENTATIONS - OWASP AppSec Europe 2009 Poland Sebastien Deleersnyder (Jan 03)
CALL FOR TRAINING PROVIDERS - OWASP AppSec Europe 2009 Poland Sebastien Deleersnyder (Jan 09)

Shouvik Bardhan

SANS List etc.. Shouvik Bardhan (Jan 15)

smurray1

Conditional Compile statements-- coding standards, and code review smurray1 (Feb 13)

Stephan Neuhaus

BSIMM: Confessions of a Software Security Alchemist (informIT) Stephan Neuhaus (Mar 19)
BSIMM: Confessions of a Software Security Alchemist (informIT) Stephan Neuhaus (Mar 19)
CfP: MetriSec 2009 Stephan Neuhaus (Mar 31)

Stephen Craig Evans

SANS/CWE Top 25: "The New Standard" for Webappsec Stephen Craig Evans (Jan 19)

Stephen de Vries

SANS Institute - CWE/SANS TOP 25 Most Dangerous Programming Errors Stephen de Vries (Jan 14)
SANS Institute - CWE/SANS TOP 25 Most Dangerous Programming Errors Stephen de Vries (Jan 15)

Steven M. Christey

BSIMM: Confessions of a Software SecurityAlchemist(informIT) Steven M. Christey (Mar 22)
Some Interesting Topics arising from the SANS/CWE Top 25 Steven M. Christey (Jan 14)
SANS Institute - CWE/SANS TOP 25 Most Dangerous ProgrammingErrors Steven M. Christey (Jan 13)
BSIMM: Confessions of a Software Security Alchemist (informIT) Steven M. Christey (Mar 18)
BSIMM: Confessions of a Software Security Alchemist (informIT) Steven M. Christey (Mar 18)
BSIMM: Confessions of a Software Security Alchemist (informIT) Steven M. Christey (Mar 18)
SANS Institute - CWE/SANS TOP 25 Most Dangerous Programming Errors Steven M. Christey (Jan 14)
BSIMM: Confessions of a Software SecurityAlchemist(informIT) Steven M. Christey (Mar 20)
Some Interesting Topics arising from the SANS/CWE Top 25 Steven M. Christey (Jan 12)
SDL / Secure Coding and impact on CWE / Top 25 Steven M. Christey (Jan 28)

Tom Brennan

Online Secure Development Training? Tom Brennan (Mar 25)

Tom Brennan - OWASP

SANS Institute - CWE/SANS TOP 25 Most Dangerous ProgrammingErrors Tom Brennan - OWASP (Jan 12)
BSIMM: Confessions of a Software Security Alchemist(informIT) Tom Brennan - OWASP (Mar 20)
Announcing LAMN: Legion Against MeaninglesscertificatioNs Tom Brennan - OWASP (Mar 19)

vanderaj vanderaj

SANS Institute - CWE/SANS TOP 25 Most Dangerous ProgrammingErrors vanderaj vanderaj (Jan 12)

Wall, Kevin

BSIMM: Confessions of a Software Security Alchemist(informIT) Wall, Kevin (Mar 18)

Wieneke, David A.

Security in QA is more than exploits Wieneke, David A. (Feb 04)

Wisseman, Stan [USA]

Supply Chain Resiliency Project Assistance Wisseman, Stan [USA] (Mar 22)