![]() |
![]() |
|
January 31, 2005PHP Security ConsortiumNow here is something interesting. Anyone who really knows me knows I am not a fan of PHP. I have seen WAY to many insecure projects written in the language, and it drives me batty. In my circle of influence I have seen way to many non-programmers (ie: web designers, script writing server admins etc) think they are developers by jumping on the PHP bandwagon... its been rather ridiculious. The failure hasn't been the language itself (although there is a lot to be said about the weaknesses in the language that almost PROMOTE insecure design), but how its been applied by the programmer. Well, I was impressed to hear that the PHP Security Consortium was formed this month to battle this. The website says that the consortium is an international group of PHP experts dedicated to promoting secure programming practices within the PHP community. Members of the consortium seek to educate PHP developers about security through a variety of resources, including documentation, tools, and standards. This is a positive move for the language. Lets hope the effort to educate the PHP community causes a rippling effect and promote the fixing of many of the problems that exist in the tools and technologies that reside there today. Congratulations to the PHPSC, and good luck. Posted by SilverStr at January 31, 2005 08:11 AM | TrackBack |
![]() ![]()
My 5 Favorite Books
Writing Secure Code
Secure Programming Cookbook Security Engineering Secure Coding Principles & Practice Inside the Security Mind ![]()
My 5 Favorite Papers
Smashing the Stack
Penetration Studies Covert Channel Analysis of Trusted Systems DoD Trusted Computer System Evaluation Criteria NSA Security Recommendation Guides ![]()
Archives
June 2006
May 2006 April 2006 March 2006 February 2006 January 2006 December 2005 November 2005 October 2005 September 2005 August 2005 July 2005 June 2005 May 2005 April 2005 March 2005 February 2005 January 2005 December 2004 November 2004 October 2004 September 2004 August 2004 July 2004 June 2004 May 2004 April 2004 March 2004 February 2004 January 2004 December 2003 November 2003 October 2003 September 2003 August 2003 July 2003 June 2003 May 2003 April 2003 March 2003 February 2003 January 2003 December 2002 November 2002 October 2002 September 2002 August 2002 July 2002 ![]() |
|