[SC-L] OWASP webappsec mailing list

2006-10-10 Thread Jeff Williams
Hi, Id like to invite you to join (or rejoin) the OWASP webappsec mailing list. We started this mailing list almost 5 years ago and it has spawned great discussion of application security issues. Were moving the list from its current home to a server controlled by OWASP. This will allow

[SC-L] Insecurity in Open Source

2006-10-10 Thread Kenneth Van Wyk
FYI, there's an interesting opinion article in Business Week by Coverity's CTO, Ben Chelf (see link below).  In it, he discusses the results of their scanning of a significant sampling of both open- and closed-source projects.Chelf compares some special purpose proprietary software

Re: [SC-L] darkreading: voting machines

2006-10-10 Thread Jeremy Epstein
Gary, Interesting point. I'm on the Virginia state commission charged with making recommendations around voting systems, and we watched the Princeton video as part of our most recent meeting. The reaction from the election officials was amusing and scary: if this is so real, why don't you hack