[SC-L] SANS Institute - CWE/SANS TOP 25 Most Dangerous ProgrammingErrors

Tom Brennan - OWASP tomb at owasp.org
Mon Jan 12 17:39:09 EST 2009


CVE - http://cve.mitre.org/ known problems known systems

CWE - http://cwe.mitre.org/ classes of problems unknown systems
http://cwe.mitre.org/top25/

Will business start to talk CWE as they already talk CVE?

Discussion/Debate/Thoughts

Tom Brennan


-----Original Message-----
From: sc-l-bounces at securecoding.org [mailto:sc-l-bounces at securecoding.org]
On Behalf Of Kenneth Van Wyk
Sent: Monday, January 12, 2009 2:30 PM
To: Secure Coding
Subject: [SC-L] SANS Institute - CWE/SANS TOP 25 Most Dangerous
ProgrammingErrors

FYI, a top 25 programming errors list from the folks at SANS has been
released.  See the following for details:

http://www.sans.org/top25errors/


Cheers,

Ken

-----
Kenneth R. van Wyk
KRvW Associates, LLC
http://www.KRvW.com








More information about the SC-L mailing list