July 2007 - Posts
Eric Bidstrup here. This year at Blackhat in Las Vegas , there is an interesting title for a session that caught my eye: “ Iron Chef: Blackhat ”. The presenters will be running static and dynamic analysis tools on code to find vulnerabilities. While this
Read More...
Eric Bidstrup here. As James wrote up the previous posting on “Why the SDL works”, it generated some interesting discussion. It was fascinating for me to see the perspective from James’ point of view as an experienced security professional that semi-recently
Read More...
James Whittaker here. One of the first things I did as a new Microsoft employee was tour the company and meet with, literally, dozens of groups that are implementing the SDL. Before joining Microsoft, I had heard many firms claim their passion and commitment
Read More...