Re: [SC-L] Need a help for an article

2013-06-04 Thread vanderaj vanderaj
Hi Punit, Good on you for selecting information security as a topic of interest. We need more grads in our field! The state of the art for buffer overflows, heap overflows, and other memory corruption bugs is so advanced that it may take you a little while to get on top of it before being able

Re: [SC-L] SANS Institute - CWE/SANS TOP 25 Most Dangerous ProgrammingErrors

2009-01-12 Thread vanderaj vanderaj
Tom, From the business' point of view, they really don't care if widget X has weaknesses, they want to know how to make money by buying and using widget X. They assume X is safe by default, even though it's not. They've been doing fast and crappy for so long, and made heaps of money from it, that