Posted on 09-02-2008
Filed Under (documentation) by Linux Poweruser Programmer

What Every Engineer Needs to Know About and Where to Learn It
Google engEDU
49 min – Jul 10, 2007

Google Tech Talks
July 10, 2007

This talk discusses recent trends in , and what every engineer needs to know to prevent the most significant emerging threats such as cross-site scripting and injection attacks. Just as every engineer might use object-oriented design principles to achieve extensibility and re-usability, every engineer needs to employ principles such as the principle of least privilege, fail-safe stance, and protecting against the weakest link to achieve . Instead of focusing on "" and "tricks" that allow you to "band-aid" the of your systems, we discuss how to derive defenses based on the application of principles, such that you can determine how to deal with new threats as they come along or application-specific threats that might be relevant to your domain. Finally, we present some statistics on the current state of vulnerabilities, and discuss existing and upcoming challenges in the field of .

Speaker: Neil Daswani
video
http://video.google.com/videoplay?docid=2792231054679782968


Sphere: Related Content

Tags: , , , , , , , , , ,

Related posts

(0) Comments    Read More   
Post a Comment
Name:
Email:
Website:
Comments: