RE: CRIME Secure Programming HOWTO

From: Marie VanCleave (mvancleave@private)
Date: Wed Jun 26 2002 - 10:24:03 PDT

  • Next message: Shaun Savage: "CRIME Resource page ?"

    There are several good reference texts on the market right now for Secure Programming practices. The Viega & McGraw book and the Howard & LeBlanc book are the ones I've seen used most often. For web application security, I thoroughly recommend the OWASP Guide to Building Secure Web Applications (http://www.owasp.org/guide/). It's loaded with practical information based on threads from the SecurityFocus Web Application Security discussion group. 
    
    FYI.
    Marie
    
    --------------------------
    Marie VanCleave
    Security Architect
    Corillian Corporation
    
    
    > -----Original Message-----
    > From: Mark Morrissey [mailto:markem@private]
    > Sent: Wednesday, June 26, 2002 9:40 AM
    > To: Shaun Savage
    > Cc: crime@private
    > Subject: Re: CRIME Secure Programming HOWTO
    > 
    > 
    > 
    > 
    > On Wed, 26 Jun 2002, Shaun Savage wrote:
    > 
    > > ~  Secure Programming for Linux and Unix HOWTO
    > > 
    > > 
    > > http://www.tldp.org/HOWTO/Secure-Programs-HOWTO/index.html
    > 
    > 
    > I think that what you wanted to mention is that there is a new update,
    > v2.962 dated March 12 of this year.
    > 
    > The HOWTO has been around for a while and always contained useful,
    > although terribly vague, information. Thanks for letting us 
    > know that it
    > was updated!
    > 
    > --mark
    > ---
    > Mark Morrissey			markem@private
    > "nothing is foolproof to a sufficiently talented fool"
    > 
    > 
    



    This archive was generated by hypermail 2b30 : Wed Jun 26 2002 - 11:25:54 PDT