Crispin Cowan wrote:
I would like to introduce you to my new kick-ass scanning tool. You run
it over your source code, and it only produces a single false-positive
for you to check out. That false positive just happens to be the
complete source code listing for your entire program :)
If you can guarantee it is a false positive, this is a very useful tool
indeed :-)
Indeed. Unfortunately, there seems to be a distinct shortage of software
that will trigger the false positive :-) :-).
--- David A. Wheeler
_______________________________________________
Secure Coding mailing list (SC-L)
SC-L@securecoding.org
List information, subscriptions, etc - http://krvw.com/mailman/listinfo/sc-l
List charter available at - http://www.securecoding.org/list/charter.php