Welcome to MSDN Blogs Sign in | Join | Help

News

May 2009 - Posts

A note on the recent SDL 4.1 process release...
Hello all - Dave here... Wanted to drop a quick note to talk about the SDL 4.1 process guidance that we released on May 19th... While most of the attention and chatter from the development community has been focused on the announcement of the SDL Process Read More...
SDL Template and Agile...
Hello all - Dave here... We have been pleased thus far with the reaction from the developer community to our release of the SDL Template for Visual Studio Team System . However, some folks in the developer community have inquired about applying the template Read More...
New SDL Pro Network Members: SANS and SAIC
When I joined the SDL team last fall, the SDL Pro Network had launched as a one-year pilot program . Upon returning from maternity leave, I took over management of the SDL Pro Network. I have been working on formalizing the program in order to bring it Read More...
Making Secure Code Easier
Technorati Tags: SDL , SDL Process Template , Tools Hi everyone! Jeremy Dallman here. I would like to announce a new and easier way to integrate the SDL into your development lifecycle. In the year since we released the Microsoft SDL Process Guidance Read More...
Please Join me in welcoming memcpy() to the SDL Rogues Gallery
Over the last few years I have written a number of articles, papers and books describing some of the dangers of using various buffer-manipulating C runtime functions. Well-known examples of bad function calls include strcpy(), strcat(), strncpy(), strncat(), Read More...
Posted: Thursday, May 14, 2009 2:41 PM by sdl | 9 Comments
Filed under:
SDL for the 5-Person PHP Shop
Hi, Bryan here. Regular readers of this blog know that I’m more likely to write technical posts about new defense tactics than I am to pontificate on the state of the security industry. However, while I was at the RSA Conference last month, I overheard Read More...
The Open Source Quality Challenge
Steve Lipner here, Steve Bellovin, one of the pioneers of Internet security wrote a blog post about security, open source, and secure development process. It's worth reading if you're an open source fan, or if you're not. My one quibble is that Steve Read More...
Posted: Friday, May 01, 2009 7:02 AM by sdl | 2 Comments
Filed under:
Page view tracker