![]() |
![]() |
|
November 11, 2002We RememberI hope you are using this day to reflect on how lucky we all are to be alive and free. It is sad that this day seems to become less and less about remembering the sacrifice that was given to us by those in the services, and more about "another day off". While I am alive, that will not happen with my family. To my fellow servicemen .... Chimo! Finished Writing Secure Code yesterday, and moved on to start reading .NET Framework Security. Where the first book is about how to write secure code in general, this new one is about how to do it with the .NET platform. It gets down and dirty about the inner workings of the.NET security framework, and is NOT for the faint of heart. Looks like I am going to be learning a lot from this book. If asked which book to recommend, it would be Writing Secure Code. The reason is a Unix developer can still gain a lot from that book, as the material presented can still apply. Overflows are overflows. Canonicalization is still just that, even if its fired against an Apache server. etc etc. You should buy this book. Period. This .NET security book is not for the faint of heart. If you intend on actually applying what you learn, then you really need to be prepared to "get into security". There is no half-vast way of doing it. Either you do, or you don't. There is no middle ground. What you learn can be applied to writing better quality software designed with security in mind with the tools .NET provide. You WILL find you will be writing more code to deal with security, but that can be offset with languages like C# that can minimize the amount of work it takes. I am just getting into it... but it looks pretty good. Well, in a few hours the Rememberance Day services are going to begin. I need to go get ready and take my daughter down to the cenotaph. TTYL Posted by SilverStr at November 11, 2002 08:30 AMComments
Never forget. Posted by: dave at December 7, 2003 01:58 PM |
![]() ![]()
My 5 Favorite Books
Writing Secure Code
Secure Programming Cookbook Security Engineering Secure Coding Principles & Practice Inside the Security Mind ![]()
My 5 Favorite Papers
Smashing the Stack
Penetration Studies Covert Channel Analysis of Trusted Systems DoD Trusted Computer System Evaluation Criteria NSA Security Recommendation Guides ![]()
Archives
December 2005
November 2005 October 2005 September 2005 August 2005 July 2005 June 2005 May 2005 April 2005 March 2005 February 2005 January 2005 December 2004 November 2004 October 2004 September 2004 August 2004 July 2004 June 2004 May 2004 April 2004 March 2004 February 2004 January 2004 December 2003 November 2003 October 2003 September 2003 August 2003 July 2003 June 2003 May 2003 April 2003 March 2003 February 2003 January 2003 December 2002 November 2002 October 2002 September 2002 August 2002 July 2002 ![]() |
|