Hi Holger, * Holger Levsen <[EMAIL PROTECTED]> [2007-10-26 13:54]: > On Tuesday 23 October 2007 22:14, Joey wrote: > > I would not recommend considering this wikipedia page an authoratitive > > reference for what can and cannot be used for symlink attacks. [...] > Does the (testing) security team have a comprehensive page with security best > and worst practices? To be able to point people at it, so one doesnt have to > point at "random" wikipedia pages or google hits?
No, but I can recommend https://www.securecoding.cert.org/confluence/display/seccode/CERT+C+Programming+Language+Secure+Coding+Standard for some secure coding notes regarding the c language. Kind regards Nico -- Nico Golde - http://www.ngolde.de - [EMAIL PROTECTED] - GPG: 0x73647CFF For security reasons, all text in this mail is double-rot13 encrypted.
pgp1m2TsOfVGQ.pgp
Description: PGP signature