Secure Coding mailing list archives

Security Analysis of the Core J2EE Patterns


From: rklists at gmail.com (Rohit Sethi)
Date: Thu, 23 Apr 2009 11:41:11 -0700

Hi list,

Security Compass is pleased to announce the launch of SecCom Labs at
http://labs.securitycompass.com - our site dedicated to free security
resources for software developers.

The first major contribution is a security analysis of the Core J2EE
Patterns. We reviewed every pattern and outlined common security
pitfalls and positive security practices based on our experience. Our
hope is that by analying security at the pattern level, we can help
spur secure software at the design phase. We'd really appreciate your
feedback!

We'll be presenting the paper at the RSA conference tomorrow morning
10:10 at Purple 310. We're bringing hard copies of the paper to
distribute at the talk, and we'd love to see you there.

Cheers,



-- 
Rohit Sethi
Security Compass
http://www.securitycompass.com


Current thread: