|
Mailing List Archive For secprog@securityfocus.com By Subject- [Q] cksum of UDP packet
- [RAZOR] Problems with mkstemp()
- A "straw man" vulnerability auditing checklist
- Application to Application authentication models....
- Are bad developer libraries the problem with M$ software?
- Buffer overflow prevention
- Can System() of Perl be bypassed?
- Delphi
- DES Key Decryption Time
- Dynamically Debugging for Security Bugs -- a useful tool ?
- Effective, Real and Group id switching for daemons
- ezmlm response
- IIS session cookies
- Import/Export a plain text key in/out of CAPI
- Insecurities in Non-exclusive Scoket Binding
- JDBC PreparedStatements, Java Data Objects/O-R mapping, and SQL Injection
- malicious code
- MD5 status
- New Tool: Malloc() FWScrape
- Password Hiding
- PGP scripting (reprise)
- PGP scripting...
- POSTPONED: Presentation on Writing Secure Programs for Linux and Unix in Maryland
- Presentation on Writing Secure Programs for Linux and Unix in Maryland
- Preventing ptrace()
- protecting perl script source
- Race-free directory removal
- Revelation, snitch, openPass - Part 2
- revelation, snitch, openPass...
- ROI for secure software engineering
- safe strcpy()?
- SafeStr 0.9.5 and XXL 0.9.1 (safe strings and exception handling for C)
- safestr alpha (Safe C String Library)
- secprog Digest 18 Nov 2002 18:35:57 -0000 Issue 113
- secprog Digest 8 Dec 2002 02:29:20 -0000 Issue 121
- secprog Digest 8 Feb 2003 03:21:18 -0000 Issue 140
- secure programming classes
- Secure programming FAQ?
- Secure Programming for Linux and Unix HOWTO
- Secure Programming Presentation, April 3, Baltimore, MD
- Secure random ID generation
- Security Auditing Report Conventions and Standards
- Security Education (was are bad developer libs....)
- Security Education - presentation experience
- Security Education in the Workplace
- SHA-1 vs. triple-DES for password encryption?
- Some questions on DES Encryption...
- Source code monitoring for a large development group
- Standards for developing secure software
- Suggestions for third-party code review consultants?
- Trusting localhost?
- webserver cgi question
- white-box test methodology
- Writing Secure code
- Writing Secure code[update]
- Last message date: Wed Aug 13 2003 - 16:36:08 EDT
- Archived on: Wed Aug 23 2006 - 14:02:47 EDT
|