Re: Open Source Code Review

From: Roman Bogorodskiy (bogorodskiy_at_inbox.ru)
Date: 04/24/04

  • Next message: Calderon, Juan Carlos (GE Commercial Finance, NonGE): "RE: Open Source Code Review"
    Date: Sat, 24 Apr 2004 21:03:26 +0400
    To: Angus <angus_md@yahoo.com>
    "From: Roman Bogordskiy <bogorodskiy@inbox.ru>"
    
    
    

     Angus wrote:

    > Is anyone aware of any open source code review
    > programs. I'd like to know if there are any that deal
    > with all aspects of security, including but not
    > limited to efficiency and breakin/overflow issues. In
    > paticular, I'd like one for Coldfusion, however any
    > others would be appreciated.

            There are a lot of the so called source code scanners. The most
    popular ones are:

    splint (http://www.splint.org/),
    flawfinder (http://www.dwheeler.com/flawfinder/),
    its4 (http://www.cigital.com/its4/),
    rats (http://www.securesw.com/rats/). But it's strongly recommended
    you'll do manual inspection of your code.

    -Roman Bogorodskiy

    
    



  • Next message: Calderon, Juan Carlos (GE Commercial Finance, NonGE): "RE: Open Source Code Review"

    Relevant Pages

    • centralization vs decentralization
      ... have one server with many services OR to split this ... Looks like some kind of cornerstone:) - security vs. efficiency. ... Kind regards, ...
      (Security-Basics)
    • IE7
      ... Internet Explorer 7 is a total disgrace. ... It provides for security not ... requested, and if it had some efficiency it would be nice, but it is taking ...
      (microsoft.public.windowsxp.general)
    • Re: Remotely shut down machine
      ... > indicating a security issue. ... > invoking the shutdown have shutdown privileges on the target PC? ... Angus ...
      (microsoft.public.windowsxp.help_and_support)
    • Re: A place of your own
      ... (modern/western bath and security) ... efficiency size condo in Bkk near a ...
      (soc.culture.thai)
    • Re: [PHP] Executing scripts from a table
      ... (dang it, I should have been able to figure out that myself!) ... For security and efficiency, I am trying to store PHP scripts in MySQL tables. ...
      (php.general)