« earlier | later » Page 1 of 11
"[31m"?! ANSI Terminal security in 2023 and finding 10 CVEs
"This paper reflects work done in late 2022 and 2023 to audit for vulnerabilities in terminal emulators"
research!rsc: Running the “Reflections on Trusting Trust” Compiler
With analysis of the surprisingly short source code.
to backdoor bell-labs compiler history retrocomputing security unix ... on 26 October 2023
Destroying x86_64 instruction decoders with differential fuzzing | Trail of Bits Blog
A neat use of fuzzing.
Chrome: 70% of all security bugs are memory safety issues | ZDNet
to ers memory-safety security ... on 29 June 2020
Formal validation of the Arm v8-M specification – Alastair Reid – Researcher at ARM Ltd
Alastair gave a presentation about this at a workshop I attended; very interesting stuff (and his blog generally is well worth reading).
to arm ers formal-methods security validation ... on 05 May 2018
SEI CERT C++ Coding Standard: Rules for Developing Safe, Reliable, and Secure Systems (2016 Edition)
There's also a wiki.
to security software-engineering ... on 05 May 2018
MCS 494, UNIX Security Holes, Fall 2004
Dan Bernstein's Unix security module. This is a bit dated now, but the material is interesting, and the assessment materials have some nice ideas.
Secure Software Design and Programming: Class Materials by David A. Wheeler
to security software-engineering teaching ... on 10 November 2017
Willy Tarreau's stuff: Look back to an end-of-life LTS kernel : 3.10
"The end of the 3.10 branch is a good opportunity to have a look back at how that worked, and to remind some important rules regarding how to choose a kernel for your products, or the risks associated with buying products running unmaintained kernels."
to kernel linux lts security software-engineering support ... on 05 November 2017
« earlier | later » Page 1 of 11
tasty by Adam Sampson.