★ wanayoo — archive 1999 http://www.linuxsecurity.com/articles/server_security_article-2530.htmlNouvelle recherche | Portail wanayoo
Advertise Here

   
Documentation
Security Sources
Forums
Firewalls
Host Security
Cryptography
Network Security
Intrusion Detection
Organizations/Events
Server Security
Vendors/Products
Projects
General
Privacy
Government
Hacks/Cracks
 
News: Server Security 2/18/2001 16:32

Avoiding security holes when developing an application - Part 1

LinuxFocus [linuxtoday]
Posted By: Jen Olson
2/18/2001

This article is the first one in a series about the main security holes that can usually to appear within an application. Along these articles, we'll show the ways to avoid them by changing a little the development habits. It doesn't take more than two weeks before a major application, part of most Linux distributions, presents a security hole, allowing, for instance, a local user to become root. Despite the great quality of most of this software, ensuring the security of a program is a hard job : it must not allow a bad guy to benefit illegally from system resources. The availability of application source code is a good thing, much appreciated by programmers, but the smallest defect in a software becomes visible to everyone. Furthermore, the detection of such defects comes at random and people doing that sort of things do not always act with good intentions.


Click here to go to this article.
Gnutella users warned of Internet worm
Feb 27

SecuritySearch.Net: Search Facilities for the Security Professional
Feb 27

Tough Measures For Hackers, Surfers
Feb 27

Government e-security measures inadequate
Feb 27

Is Hacker Culture a Help or Hindrance?
Feb 27

Computer forensics booms as importance of electronic evidence grows
Feb 27

'I Hired a Hacker': A Security Manager's Confession
Feb 27

Contact Us | Legal Notice | About Our Site
© Guardian Digital, Inc., 2000