WebApp Sec mailing list archives

RE: Training for web developers?


From: "Scovetta, Michael V" <Michael.Scovetta () ca com>
Date: Wed, 12 Nov 2003 10:16:32 -0500

Mark--

I attended the "Network Application Design & Secure Implementation" course at Blackhat 2003 Las Vegas. It was a 2-day 
course, a bit pricey (~$2000), but the material was pretty complete. They'll be giving the course again in January (and 
possibly at Asia 2003). The pace is a bit fast, and it covers *some* material that isn't directly web-related, but 
you'll leave feeling pretty insecure about network-based applications. I guess that was the point.

Michael Scovetta
Application Developer
Computer Associates
Web: http://www.ca.com



-----Original Message-----
From: Mark G. Spencer [mailto:mspencer () evidentdata com]
Sent: Sunday, November 09, 2003 7:10 PM
To: webappsec () securityfocus com
Subject: Training for web developers?


I'm looking for recommendations on training and/or brainwashing for web developers.  Something to indoctrinate the "web 
guys" in safe coding practices, with a focus on web stuff.

Thanks!

Mark G. Spencer
Computer Forensics Examiner
EvidentData, Inc.
Web: http://www.evidentdata.com 


Current thread: