Re: Auditing Source Code for Backdoors

2002-10-23 Thread Major Variola (ret)
At 06:44 AM 10/22/02 -0700, Mike Rosing wrote: On Wed, 31 Dec 1969, Bill Frantz wrote: I have been asked to audit some source code to see if the programmer inserted a backdoor. Look for exception processing. Anywhere the code looks for a particular value, something like == 0x3456352e. That

Re: Auditing Source Code for Backdoors

2002-10-22 Thread Mike Rosing
On Wed, 31 Dec 1969, Bill Frantz wrote: I have been asked to audit some source code to see if the programmer inserted a backdoor. (The code processes input from general users, and has access to the bits that control the privilege levels of those users, so backdoors are quite possible.) The