Printed
24 Deadly Sins of Software Security: Programming Flaws and How to Fix Them
This book is partitioned into four major sections:
- Web applications Sins - Cryptographic Sins
- Implementation Sins - Networking Sins.
> SQL injection > Buffer overruns
> Format string problems > Integer overflows
> C++ catastrophes > Command injection
> Information leakage > Race conditions
> Poor usability > Not updating easily
> Insecure mobile code > Weak random numbers
> Improper use of PKI > Web server & client re-
> Use of magic URLs, pre- lated vulnerabilities
dictable cookies, & > Insecure exception
hidden form fields handling
> Failure to handle > Executing code with too
errors much privilege
> Failure to protect > Use of weak password
stored data based systems
> Using cryptography in- > Failing to protect net-
correctly work traffic
> Trusting network name
resolution.
Tidak tersedia versi lain