[SC-L] OWASP Podcast 93

2012-10-02 Thread Jim Manico

SC-L,

I'm very pleased to announce that OWASP Podcast 93, and interview with 
Frank Piessens from SecAppDev.org, is now live! 
http://secappdev.org/pages/31


In this show, Frank discusses why secure development is so difficult and 
presents various potential solutions to the problem being researched by 
the academic community.


Direct download: https://www.owasp.org/download/jmanico/owasp_podcast_93.mp3
iTunes subscription: 
http://itunes.apple.com/podcast/owasp-security-podcast/id300769012?mt=2

RSS Feed: https://www.owasp.org/download/jmanico/podcast.xml

Special thanks to Thomas Herlea for curating this and future 
SecAppDev.org presentations.


Thanks for listening.

- Jim Manico
OWASP Volunteer
j...@owasp.org
@manicode
___
Secure Coding mailing list (SC-L) SC-L@securecoding.org
List information, subscriptions, etc - http://krvw.com/mailman/listinfo/sc-l
List charter available at - http://www.securecoding.org/list/charter.php
SC-L is hosted and moderated by KRvW Associates, LLC (http://www.KRvW.com)
as a free, non-commercial service to the software security community.
Follow KRvW Associates on Twitter at: http://twitter.com/KRvW_Associates
___


Re: [SC-L] Security in open source components

2012-10-02 Thread Christian Heinrich
Grant,

Below are the discussions related to Maven and the paper referenced:
1. http://krvw.com/pipermail/sc-l/2012/002786.html
2. http://krvw.com/pipermail/sc-l/2012/002788.html

On Fri, Sep 28, 2012 at 9:10 AM, Grant Murphy gmur...@redhat.com wrote:
 I don't have the original mail but some time ago a thread on this list
 mentioned this article:

 http://www.sonatype.com/Products/Why-Sonatype/Reduce-Security-Risk/Security-Brief


-- 
Regards,
Christian Heinrich

http://cmlh.id.au/contact
___
Secure Coding mailing list (SC-L) SC-L@securecoding.org
List information, subscriptions, etc - http://krvw.com/mailman/listinfo/sc-l
List charter available at - http://www.securecoding.org/list/charter.php
SC-L is hosted and moderated by KRvW Associates, LLC (http://www.KRvW.com)
as a free, non-commercial service to the software security community.
Follow KRvW Associates on Twitter at: http://twitter.com/KRvW_Associates
___