24 Deadly Sins of Software Security

  • 0 Ratings
  • 1 Want to read
  • 0 Currently reading
  • 0 Have read
Not in Library

My Reading Lists:

Create a new list

Check-In

×Close
Add an optional check-in date. Check-in dates are used to track yearly reading goals.
Today

  • 0 Ratings
  • 1 Want to read
  • 0 Currently reading
  • 0 Have read


Download Options

Buy this book

Last edited by ImportBot
December 19, 2023 | History

24 Deadly Sins of Software Security

  • 0 Ratings
  • 1 Want to read
  • 0 Currently reading
  • 0 Have read

"What makes this book so important is that it reflects the experiences of two of the industry's most experienced hands at getting real-world engineers to understand just what they're being asked for when they're asked to write secure code. The book reflects Michael Howard's and David LeBlanc's experience in the trenches working with developers years after code was long since shipped, informing them of problems." --From the Foreword by Dan Kaminsky, Director of Penetration Testing, IOActiveEradicate the Most Notorious Insecure Designs and Coding VulnerabilitiesFully updated to cover the latest security issues, 24 Deadly Sins of Software Security reveals the most common design and coding errors and explains how to fix each one-or better yet, avoid them from the start. Michael Howard and David LeBlanc, who teach Microsoft employees and the world how to secure code, have partnered again with John Viega, who uncovered the original 19 deadly programming sins. They have completely revised the book to address the most recent vulnerabilities and have added five brand-new sins. This practical guide covers all platforms, languages, and types of applications. Eliminate these security flaws from your code: SQL injection Web server- and client-related vulnerabilitiesUse of magic URLs, predictable cookies, and hidden form fieldsBuffer overrunsFormat string problemsInteger overflowsC++ catastrophesInsecure exception handlingCommand injectionFailure to handle errorsInformation leakageRace conditionsPoor usabilityNot updating easilyExecuting code with too much privilegeFailure to protect stored dataInsecure mobile codeUse of weak password-based systemsWeak random numbersUsing cryptography incorrectlyFailing to protect network trafficImproper use of PKITrusting network name resolution

Publish Date
Publisher
McGraw-Hill
Language
English
Pages
434

Buy this book

Previews available in: English

Edition Availability
Cover of: 24 Deadly Sins of Software Security
24 Deadly Sins of Software Security
2009, McGraw-Hill
Electronic resource in English
Cover of: 24 deadly sins of software security
24 deadly sins of software security: programming flaws and how to fix them
2009, McGraw-Hill Professional
in English

Add another edition?

Book Details


Published in

New York

Classifications

Library of Congress
QA76.9.A25H6977 2010

The Physical Object

Format
Electronic resource
Number of pages
434

ID Numbers

Open Library
OL24274540M
Internet Archive
deadlysinssoftwa00howa
ISBN 13
9780071626767
OverDrive
E2293BD3-0DC9-407B-BFFF-FA22FEF55113

Community Reviews (0)

Feedback?
No community reviews have been submitted for this work.

History

Download catalog record: RDF / JSON
December 19, 2023 Edited by ImportBot import existing book
September 29, 2021 Edited by ImportBot import existing book
July 22, 2019 Edited by MARC Bot remove fake subjects
June 29, 2019 Edited by MARC Bot import existing book
December 11, 2009 Created by WorkBot add works page