[Linuxtrent] seminario: Building Secure Software

  • From: Emanuele Olivetti <olivetti@xxxxxx>
  • To: linuxtrent <linuxtrent@xxxxxxxxxxxxx>
  • Date: Wed, 8 May 2002 18:12:52 +0200

Se qualcuno e' interessato, all'ITC irst (Trento) ci sara' il seguente
seminario. Non penso che l'accesso sia aperto a tutti (l'irst non e'
una struttura pubblica), ma se a qualcuno interessa, mi contatti che
posso fare da tramite (lavoro li').

Ciao

                                                Emanuele

***********************************************

TITLE: "Building Secure Software. Why the standard approach to security doesn't 
work"

SPEAKER: Gary McGraw, CTO, Cigital, Va - USA, http://www.cigital.com/~gem

DATE:  17th May, 2002 (Friday)

TIME: 9:30

VENUE: ITC-irst, Povo, Sala Conferenze, Ground floor.


ABSTRACT: Computer security takes on more importance as commerce becomes 
e-commerce and  Business embraces the Net.  However, little progress has been 
made in the security field, especially when vendor technology is considered.
Popular press coverage of computer security orbits around basic technology 
issues such as what firewalls are, when to use the DES encryption algorithm, 
which anti-virus product is best, or how the latest email-based attack works. 
The problem is, many security practitioners don't know what the problem is.  
It's the software!  Internet-enabled software applications, especially custom 
applications, present the most common security risk encountered today, and are 
the target of choice for real hackers.  This talk is all about software 
security risk and how to manage it.  The trick is to begin early, know your 
threats (including language-based flaws and pitfalls), design for security, and 
subject your design to thorough objective risk analyses and testing.  This talk 
covers material that software practitioners, including architects and languages 
researchers, can use to avoid security problems and produce more secure 
Internet-based code.

***********************************************

----- End forwarded message -----



-- 
Per iscriversi  (o disiscriversi), basta spedire un  messaggio con SOGGETTO
"subscribe" (o "unsubscribe") a mailto:linuxtrent-request@xxxxxxxxxxxxxxxxx


Other related posts:

  • » [Linuxtrent] seminario: Building Secure Software