
Number of Journals | 34 |
Number of Issues | 1,306 |
Number of Articles | 9,428 |
Article View | 9,191,276 |
PDF Download | 5,622,169 |
Securing software based on secure coding | ||
پدافند غیرعامل | ||
Article 5, Volume 5, Issue 1 - Serial Number 17, June 2014, Pages 41-50 PDF (349.32 K) | ||
Document Type: Original Article | ||
Authors | ||
S. Jorjam* ; M. Dehghani | ||
ihu | ||
Receive Date: 26 June 2013, Revise Date: 16 September 2013, Accept Date: 06 January 2014 | ||
Abstract | ||
Software security is concerned with methods of producing secure software. Concepts that are important to software security contain system risks management, programming language, platform, software audits, designing security and security tests. In other words, compliance with the security provisions in the production process can be considered an issue of passive defense in the field of software. In most cases, the programming mistakes that are easily avoided, lead to exploitable vulnerabilities in software. Reviews and analyses performed on thousand reported vulnerabilities, suggest that most vulnerabilities arise from a small number of common programming errors. We know that as soon as a vulnerability is discovered, it is easier and cheaper to fix. Application of the safe software development lifecycle, which investigates the security in each step of development to identify early potential vulnerabilities in each stage of development for the early identification of potential vulnerabilities is of utmost importance in securing software.Therefore, developers should understand secure coding techniques in order to reduce security errors and appropriate development of secure applications. This article suggests guidelines for secure coding. | ||
Keywords | ||
Coding; Security; programming languages; Passive defense; buffer overflow; vulnerability | ||
References | ||
| ||
Statistics Article View: 2,513 PDF Download: 1,405 |