Secure Coding
Course Name:
Secure Coding (IS801)
Programme:
M.Tech (CSE-IS)
Category:
Elective Courses (Ele)
Credits (L-T-P):
03 (3-0-0)
Content:
Buffer Overrun, Format String Problems, Integer Overflow, and Software Security Fundamentals , SQL Injection, Command Injection, Failure to Handle Errors, and Security Touch points, Cross Site Scripting, Magic URLs, Weak Passwords, Failing to Protect Data, Weak random numbers, improper use of cryptography, Information Leakage, ace Conditions, Poor Usability, Not Updating Easily, Executing with too much privilege , Failing to protect network traffic, improper use of PKI, trusting network name resolution.
References:
1.Howard, LeBlanc, and Viega, " 24 Deadly Sins of Software Security", ISBN: 978-0-07-162675-0.
2.John Viega and Gary McGraw, "Building Secure Software", Addison Wesley.
3.Gary McGraw, "Software Security: Building Security", Addison-Wesley.
Department:
Computer Science and Engineering