Comment Re:Good idea (Score 3, Interesting) 360
Of course, a web site and a few books won't prevent security issues - but the more it gets the word out about good programming practices, the better!
I agree. Cookie-cutter methods don't teach good secure coding practices. What we really need are more books that discuss how to address security throughout the life of software, beginning at its design. It's kind of sad that even after years of acknowledging this need, there are still only a handful of such books available. This kind of knowledge also would give developers the insight they need to know how to properly adapt these cookbook methods to a very complex software design. Teach a developer to fish ...
I'm currently doing relevant research. Check out the survey if you get a chance. I'd greatly appreciate it.
I agree. Cookie-cutter methods don't teach good secure coding practices. What we really need are more books that discuss how to address security throughout the life of software, beginning at its design. It's kind of sad that even after years of acknowledging this need, there are still only a handful of such books available. This kind of knowledge also would give developers the insight they need to know how to properly adapt these cookbook methods to a very complex software design. Teach a developer to fish
I'm currently doing relevant research. Check out the survey if you get a chance. I'd greatly appreciate it.