Secure coding: principles and practices ; [designing & implementing secure applications]
Gespeichert in:
Hauptverfasser: | , |
---|---|
Format: | Buch |
Sprache: | English |
Veröffentlicht: |
Beijing [u.a.]
O'Reilly
2003
|
Ausgabe: | 1. ed. |
Schlagworte: | |
Online-Zugang: | Inhaltsverzeichnis |
Beschreibung: | Literaturverz. und URL-Verz. S. 185 - 194 |
Beschreibung: | XX, 202 S. Ill., graph. Darst. 23 cm |
ISBN: | 0596002424 |
Internformat
MARC
LEADER | 00000nam a2200000 c 4500 | ||
---|---|---|---|
001 | BV017415045 | ||
003 | DE-604 | ||
005 | 20060427 | ||
007 | t | ||
008 | 030812s2003 gw ad|| |||| 00||| eng d | ||
016 | 7 | |a 968388434 |2 DE-101 | |
020 | |a 0596002424 |c kart. : EUR 29.00, $ 29.95 |9 0-596-00242-4 | ||
035 | |a (OCoLC)249567568 | ||
035 | |a (DE-599)BVBBV017415045 | ||
040 | |a DE-604 |b ger |e rakwb | ||
041 | 0 | |a eng | |
044 | |a gw |c DE | ||
049 | |a DE-703 |a DE-573 |a DE-19 |a DE-91G |a DE-634 |a DE-83 |a DE-11 | ||
050 | 0 | |a QA76.9.A25 | |
082 | 0 | |a 005.8 | |
084 | |a ST 230 |0 (DE-625)143617: |2 rvk | ||
084 | |a ST 273 |0 (DE-625)143640: |2 rvk | ||
084 | |a ST 276 |0 (DE-625)143642: |2 rvk | ||
084 | |a ST 277 |0 (DE-625)143643: |2 rvk | ||
084 | |a ST 277 |2 sdnb | ||
084 | |a DAT 461f |2 stub | ||
100 | 1 | |a Graff, Mark G. |e Verfasser |4 aut | |
245 | 1 | 0 | |a Secure coding |b principles and practices ; [designing & implementing secure applications] |c Mark G. Graff and Kenneth R. van Wyk |
250 | |a 1. ed. | ||
264 | 1 | |a Beijing [u.a.] |b O'Reilly |c 2003 | |
300 | |a XX, 202 S. |b Ill., graph. Darst. |c 23 cm | ||
336 | |b txt |2 rdacontent | ||
337 | |b n |2 rdamedia | ||
338 | |b nc |2 rdacarrier | ||
500 | |a Literaturverz. und URL-Verz. S. 185 - 194 | ||
650 | 4 | |a Internet - Anwendungssystem - Computersicherheit - Datensicherung - Codierung <Programmierung> | |
650 | 4 | |a Computer security | |
650 | 0 | 7 | |a Datensicherung |0 (DE-588)4011144-1 |2 gnd |9 rswk-swf |
650 | 0 | 7 | |a Internet |0 (DE-588)4308416-3 |2 gnd |9 rswk-swf |
650 | 0 | 7 | |a Anwendungssystem |0 (DE-588)4139375-2 |2 gnd |9 rswk-swf |
650 | 0 | 7 | |a Computersicherheit |0 (DE-588)4274324-2 |2 gnd |9 rswk-swf |
650 | 0 | 7 | |a Codierung |g Programmierung |0 (DE-588)4303683-1 |2 gnd |9 rswk-swf |
689 | 0 | 0 | |a Internet |0 (DE-588)4308416-3 |D s |
689 | 0 | 1 | |a Anwendungssystem |0 (DE-588)4139375-2 |D s |
689 | 0 | 2 | |a Computersicherheit |0 (DE-588)4274324-2 |D s |
689 | 0 | 3 | |a Datensicherung |0 (DE-588)4011144-1 |D s |
689 | 0 | 4 | |a Codierung |g Programmierung |0 (DE-588)4303683-1 |D s |
689 | 0 | |5 DE-604 | |
700 | 1 | |a Wyk, Kenneth R. van |e Verfasser |4 aut | |
856 | 4 | 2 | |m DNB Datenaustausch |q application/pdf |u http://bvbr.bib-bvb.de:8991/F?func=service&doc_library=BVB01&local_base=BVB01&doc_number=010492693&sequence=000001&line_number=0001&func_code=DB_RECORDS&service_type=MEDIA |3 Inhaltsverzeichnis |
943 | 1 | |a oai:aleph.bib-bvb.de:BVB01-010492693 |
Datensatz im Suchindex
_version_ | 1808135293672357888 |
---|---|
adam_text |
TABLE
OF
CONTENTS
PREFACE
.
XIII
1.
NO
STRAIGHT
THING
.
1
THE
VULNERABILITY
CYCLE
4
WHAT
IS
AN
ATTACK?
6
WHY
GOOD
PEOPLE
WRITE
BAD
CODE
14
A
CALL
TO
ARMS
26
2.
ARCHITECTURE
.
30
WHAT
IS
SECURITY
ARCHITECTURE?
31
PRINCIPLES
OF
SECURITY
ARCHITECTURE
33
CASE
STUDY:
THE
JAVA
SANDBOX
51
3.
DESIGN
.55
WHY
DOES
GOOD
DESIGN
MATTER?
55
SECURE
DESIGN
STEPS
56
SPECIAL
DESIGN
ISSUES
71
BAD
PRACTICES
79
CASE
STUDIES
81
4.
IMPLEMENTATION
.
99
GOOD
PRACTICES
102
BAD
PRACTICES
110
CASE
STUDIES
117
5.
OPERATIONS
.
124
SECURITY
IS
EVERYBODY
'
S
PROBLEM
125
GOOD
PRACTICES
127
BAD
PRACTICES
143
CASE
STUDIES
145
6.
AUTOMATION
AND
TESTING
.
154
WHY
TEST?
155
GOOD
GENERAL
PRACTICES
156
GOOD
PRACTICES
THROUGH
THE
LIFECYCLE
158
RISK
ASSESSMENT
METHODOLOGIES
170
CASE
STUDIES
172
APPENDIX:
RESOURCES
.185
INDEX
.
195
XII
|
TABLE
OF
CONTENTS |
any_adam_object | 1 |
author | Graff, Mark G. Wyk, Kenneth R. van |
author_facet | Graff, Mark G. Wyk, Kenneth R. van |
author_role | aut aut |
author_sort | Graff, Mark G. |
author_variant | m g g mg mgg k r v w krv krvw |
building | Verbundindex |
bvnumber | BV017415045 |
callnumber-first | Q - Science |
callnumber-label | QA76 |
callnumber-raw | QA76.9.A25 |
callnumber-search | QA76.9.A25 |
callnumber-sort | QA 276.9 A25 |
callnumber-subject | QA - Mathematics |
classification_rvk | ST 230 ST 273 ST 276 ST 277 |
classification_tum | DAT 461f |
ctrlnum | (OCoLC)249567568 (DE-599)BVBBV017415045 |
dewey-full | 005.8 |
dewey-hundreds | 000 - Computer science, information, general works |
dewey-ones | 005 - Computer programming, programs, data, security |
dewey-raw | 005.8 |
dewey-search | 005.8 |
dewey-sort | 15.8 |
dewey-tens | 000 - Computer science, information, general works |
discipline | Informatik |
edition | 1. ed. |
format | Book |
fullrecord | <?xml version="1.0" encoding="UTF-8"?><collection xmlns="http://www.loc.gov/MARC21/slim"><record><leader>00000nam a2200000 c 4500</leader><controlfield tag="001">BV017415045</controlfield><controlfield tag="003">DE-604</controlfield><controlfield tag="005">20060427</controlfield><controlfield tag="007">t</controlfield><controlfield tag="008">030812s2003 gw ad|| |||| 00||| eng d</controlfield><datafield tag="016" ind1="7" ind2=" "><subfield code="a">968388434</subfield><subfield code="2">DE-101</subfield></datafield><datafield tag="020" ind1=" " ind2=" "><subfield code="a">0596002424</subfield><subfield code="c">kart. : EUR 29.00, $ 29.95</subfield><subfield code="9">0-596-00242-4</subfield></datafield><datafield tag="035" ind1=" " ind2=" "><subfield code="a">(OCoLC)249567568</subfield></datafield><datafield tag="035" ind1=" " ind2=" "><subfield code="a">(DE-599)BVBBV017415045</subfield></datafield><datafield tag="040" ind1=" " ind2=" "><subfield code="a">DE-604</subfield><subfield code="b">ger</subfield><subfield code="e">rakwb</subfield></datafield><datafield tag="041" ind1="0" ind2=" "><subfield code="a">eng</subfield></datafield><datafield tag="044" ind1=" " ind2=" "><subfield code="a">gw</subfield><subfield code="c">DE</subfield></datafield><datafield tag="049" ind1=" " ind2=" "><subfield code="a">DE-703</subfield><subfield code="a">DE-573</subfield><subfield code="a">DE-19</subfield><subfield code="a">DE-91G</subfield><subfield code="a">DE-634</subfield><subfield code="a">DE-83</subfield><subfield code="a">DE-11</subfield></datafield><datafield tag="050" ind1=" " ind2="0"><subfield code="a">QA76.9.A25</subfield></datafield><datafield tag="082" ind1="0" ind2=" "><subfield code="a">005.8</subfield></datafield><datafield tag="084" ind1=" " ind2=" "><subfield code="a">ST 230</subfield><subfield code="0">(DE-625)143617:</subfield><subfield code="2">rvk</subfield></datafield><datafield tag="084" ind1=" " ind2=" "><subfield code="a">ST 273</subfield><subfield code="0">(DE-625)143640:</subfield><subfield code="2">rvk</subfield></datafield><datafield tag="084" ind1=" " ind2=" "><subfield code="a">ST 276</subfield><subfield code="0">(DE-625)143642:</subfield><subfield code="2">rvk</subfield></datafield><datafield tag="084" ind1=" " ind2=" "><subfield code="a">ST 277</subfield><subfield code="0">(DE-625)143643:</subfield><subfield code="2">rvk</subfield></datafield><datafield tag="084" ind1=" " ind2=" "><subfield code="a">ST 277</subfield><subfield code="2">sdnb</subfield></datafield><datafield tag="084" ind1=" " ind2=" "><subfield code="a">DAT 461f</subfield><subfield code="2">stub</subfield></datafield><datafield tag="100" ind1="1" ind2=" "><subfield code="a">Graff, Mark G.</subfield><subfield code="e">Verfasser</subfield><subfield code="4">aut</subfield></datafield><datafield tag="245" ind1="1" ind2="0"><subfield code="a">Secure coding</subfield><subfield code="b">principles and practices ; [designing & implementing secure applications]</subfield><subfield code="c">Mark G. Graff and Kenneth R. van Wyk</subfield></datafield><datafield tag="250" ind1=" " ind2=" "><subfield code="a">1. ed.</subfield></datafield><datafield tag="264" ind1=" " ind2="1"><subfield code="a">Beijing [u.a.]</subfield><subfield code="b">O'Reilly</subfield><subfield code="c">2003</subfield></datafield><datafield tag="300" ind1=" " ind2=" "><subfield code="a">XX, 202 S.</subfield><subfield code="b">Ill., graph. Darst.</subfield><subfield code="c">23 cm</subfield></datafield><datafield tag="336" ind1=" " ind2=" "><subfield code="b">txt</subfield><subfield code="2">rdacontent</subfield></datafield><datafield tag="337" ind1=" " ind2=" "><subfield code="b">n</subfield><subfield code="2">rdamedia</subfield></datafield><datafield tag="338" ind1=" " ind2=" "><subfield code="b">nc</subfield><subfield code="2">rdacarrier</subfield></datafield><datafield tag="500" ind1=" " ind2=" "><subfield code="a">Literaturverz. und URL-Verz. S. 185 - 194</subfield></datafield><datafield tag="650" ind1=" " ind2="4"><subfield code="a">Internet - Anwendungssystem - Computersicherheit - Datensicherung - Codierung <Programmierung></subfield></datafield><datafield tag="650" ind1=" " ind2="4"><subfield code="a">Computer security</subfield></datafield><datafield tag="650" ind1="0" ind2="7"><subfield code="a">Datensicherung</subfield><subfield code="0">(DE-588)4011144-1</subfield><subfield code="2">gnd</subfield><subfield code="9">rswk-swf</subfield></datafield><datafield tag="650" ind1="0" ind2="7"><subfield code="a">Internet</subfield><subfield code="0">(DE-588)4308416-3</subfield><subfield code="2">gnd</subfield><subfield code="9">rswk-swf</subfield></datafield><datafield tag="650" ind1="0" ind2="7"><subfield code="a">Anwendungssystem</subfield><subfield code="0">(DE-588)4139375-2</subfield><subfield code="2">gnd</subfield><subfield code="9">rswk-swf</subfield></datafield><datafield tag="650" ind1="0" ind2="7"><subfield code="a">Computersicherheit</subfield><subfield code="0">(DE-588)4274324-2</subfield><subfield code="2">gnd</subfield><subfield code="9">rswk-swf</subfield></datafield><datafield tag="650" ind1="0" ind2="7"><subfield code="a">Codierung</subfield><subfield code="g">Programmierung</subfield><subfield code="0">(DE-588)4303683-1</subfield><subfield code="2">gnd</subfield><subfield code="9">rswk-swf</subfield></datafield><datafield tag="689" ind1="0" ind2="0"><subfield code="a">Internet</subfield><subfield code="0">(DE-588)4308416-3</subfield><subfield code="D">s</subfield></datafield><datafield tag="689" ind1="0" ind2="1"><subfield code="a">Anwendungssystem</subfield><subfield code="0">(DE-588)4139375-2</subfield><subfield code="D">s</subfield></datafield><datafield tag="689" ind1="0" ind2="2"><subfield code="a">Computersicherheit</subfield><subfield code="0">(DE-588)4274324-2</subfield><subfield code="D">s</subfield></datafield><datafield tag="689" ind1="0" ind2="3"><subfield code="a">Datensicherung</subfield><subfield code="0">(DE-588)4011144-1</subfield><subfield code="D">s</subfield></datafield><datafield tag="689" ind1="0" ind2="4"><subfield code="a">Codierung</subfield><subfield code="g">Programmierung</subfield><subfield code="0">(DE-588)4303683-1</subfield><subfield code="D">s</subfield></datafield><datafield tag="689" ind1="0" ind2=" "><subfield code="5">DE-604</subfield></datafield><datafield tag="700" ind1="1" ind2=" "><subfield code="a">Wyk, Kenneth R. van</subfield><subfield code="e">Verfasser</subfield><subfield code="4">aut</subfield></datafield><datafield tag="856" ind1="4" ind2="2"><subfield code="m">DNB Datenaustausch</subfield><subfield code="q">application/pdf</subfield><subfield code="u">http://bvbr.bib-bvb.de:8991/F?func=service&doc_library=BVB01&local_base=BVB01&doc_number=010492693&sequence=000001&line_number=0001&func_code=DB_RECORDS&service_type=MEDIA</subfield><subfield code="3">Inhaltsverzeichnis</subfield></datafield><datafield tag="943" ind1="1" ind2=" "><subfield code="a">oai:aleph.bib-bvb.de:BVB01-010492693</subfield></datafield></record></collection> |
id | DE-604.BV017415045 |
illustrated | Illustrated |
indexdate | 2024-08-23T00:16:29Z |
institution | BVB |
isbn | 0596002424 |
language | English |
oai_aleph_id | oai:aleph.bib-bvb.de:BVB01-010492693 |
oclc_num | 249567568 |
open_access_boolean | |
owner | DE-703 DE-573 DE-19 DE-BY-UBM DE-91G DE-BY-TUM DE-634 DE-83 DE-11 |
owner_facet | DE-703 DE-573 DE-19 DE-BY-UBM DE-91G DE-BY-TUM DE-634 DE-83 DE-11 |
physical | XX, 202 S. Ill., graph. Darst. 23 cm |
publishDate | 2003 |
publishDateSearch | 2003 |
publishDateSort | 2003 |
publisher | O'Reilly |
record_format | marc |
spelling | Graff, Mark G. Verfasser aut Secure coding principles and practices ; [designing & implementing secure applications] Mark G. Graff and Kenneth R. van Wyk 1. ed. Beijing [u.a.] O'Reilly 2003 XX, 202 S. Ill., graph. Darst. 23 cm txt rdacontent n rdamedia nc rdacarrier Literaturverz. und URL-Verz. S. 185 - 194 Internet - Anwendungssystem - Computersicherheit - Datensicherung - Codierung <Programmierung> Computer security Datensicherung (DE-588)4011144-1 gnd rswk-swf Internet (DE-588)4308416-3 gnd rswk-swf Anwendungssystem (DE-588)4139375-2 gnd rswk-swf Computersicherheit (DE-588)4274324-2 gnd rswk-swf Codierung Programmierung (DE-588)4303683-1 gnd rswk-swf Internet (DE-588)4308416-3 s Anwendungssystem (DE-588)4139375-2 s Computersicherheit (DE-588)4274324-2 s Datensicherung (DE-588)4011144-1 s Codierung Programmierung (DE-588)4303683-1 s DE-604 Wyk, Kenneth R. van Verfasser aut DNB Datenaustausch application/pdf http://bvbr.bib-bvb.de:8991/F?func=service&doc_library=BVB01&local_base=BVB01&doc_number=010492693&sequence=000001&line_number=0001&func_code=DB_RECORDS&service_type=MEDIA Inhaltsverzeichnis |
spellingShingle | Graff, Mark G. Wyk, Kenneth R. van Secure coding principles and practices ; [designing & implementing secure applications] Internet - Anwendungssystem - Computersicherheit - Datensicherung - Codierung <Programmierung> Computer security Datensicherung (DE-588)4011144-1 gnd Internet (DE-588)4308416-3 gnd Anwendungssystem (DE-588)4139375-2 gnd Computersicherheit (DE-588)4274324-2 gnd Codierung Programmierung (DE-588)4303683-1 gnd |
subject_GND | (DE-588)4011144-1 (DE-588)4308416-3 (DE-588)4139375-2 (DE-588)4274324-2 (DE-588)4303683-1 |
title | Secure coding principles and practices ; [designing & implementing secure applications] |
title_auth | Secure coding principles and practices ; [designing & implementing secure applications] |
title_exact_search | Secure coding principles and practices ; [designing & implementing secure applications] |
title_full | Secure coding principles and practices ; [designing & implementing secure applications] Mark G. Graff and Kenneth R. van Wyk |
title_fullStr | Secure coding principles and practices ; [designing & implementing secure applications] Mark G. Graff and Kenneth R. van Wyk |
title_full_unstemmed | Secure coding principles and practices ; [designing & implementing secure applications] Mark G. Graff and Kenneth R. van Wyk |
title_short | Secure coding |
title_sort | secure coding principles and practices designing implementing secure applications |
title_sub | principles and practices ; [designing & implementing secure applications] |
topic | Internet - Anwendungssystem - Computersicherheit - Datensicherung - Codierung <Programmierung> Computer security Datensicherung (DE-588)4011144-1 gnd Internet (DE-588)4308416-3 gnd Anwendungssystem (DE-588)4139375-2 gnd Computersicherheit (DE-588)4274324-2 gnd Codierung Programmierung (DE-588)4303683-1 gnd |
topic_facet | Internet - Anwendungssystem - Computersicherheit - Datensicherung - Codierung <Programmierung> Computer security Datensicherung Internet Anwendungssystem Computersicherheit Codierung Programmierung |
url | http://bvbr.bib-bvb.de:8991/F?func=service&doc_library=BVB01&local_base=BVB01&doc_number=010492693&sequence=000001&line_number=0001&func_code=DB_RECORDS&service_type=MEDIA |
work_keys_str_mv | AT graffmarkg securecodingprinciplesandpracticesdesigningimplementingsecureapplications AT wykkennethrvan securecodingprinciplesandpracticesdesigningimplementingsecureapplications |