Writing Secure Code (Second Edition)

Author: Howard
Publisher:
Publish Date: 2005-01-01
Features: This book is divided into five parts. The first part summarizes the significance of protecting system security, as well as the principles and technologies used in designing secure systems. The second part introduces important coding techniques applicable to almost any application. The third part focuses on network application and .NET code security. The fourth part discusses security issues rarely covered in general books, such as testing, conducting secure code reviews, privacy policies, and secure software installation. The fifth part is an appendix, which introduces dangerous APIs and safety checklists suitable for designers, developers, and testers. The first edition of this book was a mandatory reading for all members of the Windows development team, while the second edition summarizes many new discoveries from multiple security initiatives targeting Microsoft products. The book was designated as a must-read for Microsoft employees by Bill Gates. It is an excellent textbook for software design, development, testing, and system management personnel. Every year, we spend countless amounts of money and endure endless frustrations due to hacker attacks on network applications, stealing credit card passwords, destroying Word sites, and slowing down internet speeds. Through this engaging and fresh book, readers can learn various security technologies to defend against hacker attacks. Now, this book has been updated with new security threats and lessons learned from Microsoft's recent security campaigns. Readers will learn how to fortify their applications throughout the entire development process—from designing secure applications to writing robust code—so that they can withstand repeated attacks from testing applications probing for security vulnerabilities. The book explains security rules, strategies, and coding techniques that help enhance the resistance of code to attacks. The two authors of this book are seasoned veterans who have resolved some of the most challenging security issues in the industry. The book also provides numerous example codes to illustrate specific development techniques.

📌 Related Posts