Secure Coding in C and C++ - Robert C. Seacord - Librairie Eyrolles
Tous nos rayons

Déjà client ? Identifiez-vous

Mot de passe oublié ?

Nouveau client ?

CRÉER VOTRE COMPTE
Secure Coding in C and C++
Ajouter à une liste

Librairie Eyrolles - Paris 5e
Indisponible

Secure Coding in C and C++

Secure Coding in C and C++

Robert C. Seacord - Collection The SEI Series in Software Engineering

342 pages, parution le 21/12/2005

Résumé

Learn the Root Causes of Software Vulnerabilities and How to Avoid Them

Commonly exploited software vulnerabilities are usually caused by avoidable software defects. Having analyzed nearly 18,000 vulnerability reports over the past ten years, the CERT/Coordination Center (CERT/CC) has determined that a relatively small number of root causes account for most of them. This book identifies and explains these causes and shows the steps that can be taken to prevent exploitation. Moreover, this book encourages programmers to adopt security best practices and develop a security mindset that can help protect software from tomorrow's attacks, not just today's.

Drawing on the CERT/CC's reports and conclusions, Robert Seacord systematically identifies the program errors most likely to lead to security breaches, shows how they can be exploited, reviews the potential consequences, and presents secure alternatives.

Coverage includes technical detail on how to

  • Improve the overall security of any C/C++ application
  • Thwart buffer overflows and stack-smashing attacks that exploit insecure string manipulation logic
  • Avoid vulnerabilities and security flaws resulting from the incorrect use of dynamic memory management functions
  • Eliminate integer-related problems: integer overflows, sign errors, and truncation errors
  • Correctly use formatted output functions without introducing format-string vulnerabilities
  • Avoid I/O vulnerabilities, including race conditions

Secure Coding in C and C++ presents hundreds of examples of secure code, insecure code, and exploits, implemented for Windows and Linux. If you're responsible for creating secure C or C++ software--or for keeping it safe--no other book offers you this much detailed, expert assistance.

L'auteur - Robert C. Seacord

Robert C. Seacord is a senior technical staff member at the SEI. He has over 17 years of development experience, including extensive work with Enterprise JavaBeans™, CORBA, and Web technologies. He has previously been a technical staff member at the X Consortium and IBM.

Sommaire

  • Running with Scissors
  • Strings
  • Pointer Subterfuge
  • Dynamic Memory Management
  • Integer Security
  • Formatted Output
  • File I/O
  • Recommended Practices
Voir tout
Replier

Caractéristiques techniques

  PAPIER
Éditeur(s) Addison Wesley
Auteur(s) Robert C. Seacord
Collection The SEI Series in Software Engineering
Parution 21/12/2005
Nb. de pages 342
Format 17,5 x 23,5
Couverture Broché
Poids 530g
Intérieur Noir et Blanc
EAN13 9780321335722
ISBN13 978-0-321-33572-2

Avantages Eyrolles.com

Livraison à partir de 0,01 en France métropolitaine
Paiement en ligne SÉCURISÉ
Livraison dans le monde
Retour sous 15 jours
+ d'un million et demi de livres disponibles
satisfait ou remboursé
Satisfait ou remboursé
Paiement sécurisé
modes de paiement
Paiement à l'expédition
partout dans le monde
Livraison partout dans le monde
Service clients sav@commande.eyrolles.com
librairie française
Librairie française depuis 1925
Recevez nos newsletters
Vous serez régulièrement informé(e) de toutes nos actualités.
Inscription