The Art of Software Security Assessment

Continued ramblings on software security and code auditing


  • Home
  • Errata
  • Suggestions
  • The Vault

About:

Full Name
Website
Details

Posts by :

  • 20 Feb 2007 Downtime & Couch Cushions
  • 18 Jan 2007 Ranged Integers and Saturation Semantics - By Robert C. Seacord
  • 06 Jan 2007 Inquiring Minds Want to Know (SANS Interview)
  • 03 Jan 2007 Attacking delete and delete [] in C++
  • 24 Dec 2006 Updates and Reviews

  • The Book

    Profile

    This blog provides running commentary from Mark Dowd, John McDonald, and Justin Schuh, the authors of the book: The Art of Software Security Assessment. You can purchase a copy from Amazon, or directly from the publisher, Addison-Wesley, and peruse the sample chapter on C Language vulnerabilities.

  • Tags

    • Errata (5)
    • Discussion (31)
    • Auditing (9)
      • Windows (6)
      • Unix (3)
      • C/C++ (9)
      • SQL (2)
      • Web (5)
    • Spot the Vuln (2)
  • Archives

    • July 2009 (2)
    • November 2008 (2)
    • October 2008 (1)
    • August 2008 (2)
    • June 2008 (1)
    • May 2008 (1)
    • April 2008 (2)
    • February 2008 (2)
    • January 2008 (2)
    • August 2007 (1)
    • July 2007 (1)
    • April 2007 (1)
    • February 2007 (6)
    • January 2007 (6)
    • December 2006 (13)
The Art of Software Security Assessment. © 2010 All rights reserved.