Re: [SC-L] informIT: Technology transfer

2010-10-29 Thread Jeremy Epstein
track that the Cigital to Fortify to HP technology has. -Chris -Original Message- From: sc-l-boun...@securecoding.org [mailto:sc-l-boun...@securecoding.org] On Behalf Of Gary McGraw Sent: Tuesday, October 26, 2010 10:14 AM To: Secure Code Mailing List Subject: [SC-L] informIT

Re: [SC-L] informIT: Technology transfer

2010-10-29 Thread Gary McGraw
] informIT: Technology transfer hi sc-l, From time to time a thread or two has popped up on this list discussing how we get software security into the main stream. One obvious way to do this is through technology transfer. I am particularly proud of the role that Cigital has played getting

Re: [SC-L] informIT: Technology transfer

2010-10-29 Thread Chris Wysopal
: [SC-L] informIT: Technology transfer Weld is correct about SLINT which did predate ITS4. We also created a tool called Jslint which even borrowed the slint name from what was then the l0pht http://ieeexplore.ieee.org/xpl/freeabs_all.jsp?isNumber=19003arNumber=877869isnumber=19003arnumber=877869

Re: [SC-L] informIT: Technology transfer

2010-10-28 Thread Chris Wysopal
a similar track that the Cigital to Fortify to HP technology has. -Chris -Original Message- From: sc-l-boun...@securecoding.org [mailto:sc-l-boun...@securecoding.org] On Behalf Of Gary McGraw Sent: Tuesday, October 26, 2010 10:14 AM To: Secure Code Mailing List Subject: [SC-L] informIT

[SC-L] informIT: Technology transfer

2010-10-27 Thread Gary McGraw
hi sc-l, From time to time a thread or two has popped up on this list discussing how we get software security into the main stream. One obvious way to do this is through technology transfer. I am particularly proud of the role that Cigital has played getting security-focused static analysis