Building Secure Software: How to Avoid Security Problems the Right Way
Language: English
Published by Addison-Wesley Professional, 2001
- First Edition
- Hardcover
- Used

Seller: The Maryland Book Bank, Baltimore, MD, U.S.A.The Maryland Book Bank
AbeBooks seller since September 1, 2010
Condition: Used - Very good
US$ 2.71
Quantity: 2 available
Add to basketItem description from seller
Used - Very Good.
Seller Inventory # 3-R-4-0875
- Title
- Building Secure Software: How to Avoid Security Problems the Right Way
- Author
- Viega, John; McGraw, Gary
- Publisher
- Addison-Wesley Professional
- Publication year
- 2001
- Condition
- Very Good
- Binding
- hardcover
- Language
- English
- ISBN 10
- 020172152X
- ISBN 13
- 9780201721522
- Edition
- 1st Edition.
Most organizations have a firewall, antivirus software, and intrusion detection systems, all of which are intended to keep attackers out. So why is computer security a bigger problem today than ever before? The answer is simple--bad software lies at the heart of all computer security problems. Traditional solutions simply treat the symptoms, not the problem, and usually do so in a reactive way. This book teaches you how to take a proactive approach to computer security.
Building Secure Software cuts to the heart of computer security to help you get security right the first time. If you are serious about computer security, you need to read this book, which includes essential lessons for both security professionals who have come to realize that software is the problem, and software developers who intend to make their code behave. Written for anyone involved in software development and usefrom managers to codersthis book is your first step toward building more secure software. Building Secure Software provides expert perspectives and techniques to help you ensure the security of essential software. If you consider threats and vulnerabilities early in the devel-opment cycle you can build security into your system. With this book you will learn how to determine an acceptable level of risk, develop security tests, and plug security holes before software is even shipped.
Inside you'll find the ten guiding principles for software security, as well as detailed coverage of:
- Software risk management for security
- Selecting technologies to make your code more secure
- Security implications of open source and proprietary software
- How to audit software
- The dreaded buffer overflow
- Access control and password authentication
- Random number generation
- Applying cryptography
- Trust management and input
- Client-side security
- Dealing with firewalls
Only by building secure software can you defend yourself against security breaches and gain the confidence that comes with knowing you won't have to play the "penetrate and patch" game anymore. Get it right the first time. Let these expert authors show you how to properly design your system; save time, money, and credibility; and preserve your customers' trust.
"Synopsis" may belong to another edition of this title.
About the Author
John Viega is the CTO of Secure Software Solutions (www.securesw.com) and a noted expert in the area of software security. He is responsible for numerous tools in this area, including code scanners (ITS4 and RATS), random number suites (EGADS), automated repair tools, and secure programming libraries. He is also the original author of Mailman, the GNU mailing list manager.
Gary McGraw, Cigital's CTO, is a leading authority on software security. Dr. McGraw is coauthor of the groundbreaking books Building Secure Software and Exploiting Software (both from Addison-Wesley). While consulting for major software producers and consumers, he has published over ninety peer-reviewed technical publications, and functions as principal investigator on grants from DARPA, the National Science Foundation, and NIST's Advanced Technology Program. He serves on the advisory boards of Authentica, Counterpane, and Fortify Software. He is also an advisor to the computer science departments at University of California, Davis, and the University of Virginia, as well as the School of Informatics at Indiana University.
"About the title" may belong to another edition of this title.
The Maryland Book Bank
Baltimore, MD, U.S.A.
AbeBooks seller since September 1, 2010
Shipping rates within U.S.A.
| Item | 5 to 11 business days | 5 to 14 business days |
|---|---|---|
| First item | US$ 4.69 | US$ 15.00 |
Payment methods
Store description
The Maryland Book Bank is a non profit organization providing free children's books to families, schools and teachers all over the state. All revenue from the sale of our books goes into our children's programs.
Seller's business information
The Maryland Book Bank
501 N. Calvert Street
Baltimore, MD U.S.A. 21278
Terms of sale
We guarantee the condition of every book as it's described on the Abebooks web
sites. If you're dissatisfied with your purchase (Incorrect Book/Not as
Described/Damaged) or if the order hasn't arrived, you're eligible for a refund
within 30 days of the estimated delivery date. If you've changed your mind about
a book that you've ordered, please use the Ask bookseller a question link to
contact us and we'll respond within 2 business days.
The Maryland Book Bank
501 N. Calvert St
Baltimore, MD 21278
customerservice@marylandbookbank.org
Shipping terms
Shipping costs are based on books weighing 2.2 LB, or 1 KG. If your book order is heavy or oversized, we may contact you to let you know extra shipping is required.