Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: Migrated to Confluence 4.0

Secure coding guidelines for Java:

https://www.owasp.org/index.php/Java_leading_security_practice#Finality

https://www.securecoding.cert.org/confluence/display/java/SEI+CERT+Oracle+Coding+Standard+for+Java

...

Check out the Rules and Recommendations from CERT on Secure Coding With Java:

[https://www.securecoding.cert.org/confluence/pages/viewpage.action?pageId=35979419|https://www.securecoding.cert.org/confluence/pages/viewpage.action?pageId=35979419
]

Anti-patterns:

CERT's Rules and Recommendations for Secure Coding with Java

cwe.mitre.org

Videos:

Secure coding guidelines for the Java programming language:

https://www.youtube.com/watch?v=08gdSEeeiS4

Safe Coding Practices:

http://www.safecode.org/publication/SAFECode_Dev_Practices0211.pdf

Threat Modeling Tool in the SDL:

https://www.microsoft.com/en-us/sdl/adopt/threatmodeling.aspx

 

Intro to secure coding:

intro_secure_coding_20141217.pdf

 

Learning by breaking: A new project insecure web apps:

Learning_by_Breaking_A_New_Project_Insecure_Web_Apps-Chuck_Willis.ppt