Engineering News Blog

Engineering News

Latest news of interest to engineers. Sourced from GlobalSpec's Engineering News

Previous in Blog: Smart Car 70MPH Impact into Concrete   Next in Blog: Researchers One Step Closer To Creating Life
Close
Close
Close
9 comments
Rate Comments: Nested

Dangerous Coding Errors Revealed

Posted January 13, 2009 8:00 AM

From BBC News | Technology | World Edition:

The US National Security Agency has helped put together a list of the world's most dangerous coding mistakes. The 25 entry list contains errors that can lead to security holes or vulnerable areas that can be targeted by cyber criminals. Experts say many of these errors are not well understood by programmers.

Read the whole article

Reply

Interested in this topic? By joining CR4 you can "subscribe" to
this discussion and receive notification when new comments are added.

"Almost" Good Answers:

Check out these comments that don't yet have enough votes to be "official" good answers and, if you agree with them, vote them!
Anonymous Poster
#1

Re: Dangerous Coding Errors Revealed

01/13/2009 12:11 PM

Errors aside, I wonder how thoroughly the large software developers check their own products for exploitable code deliberately put in by programmers. I'm thinking not so much for reasons of spite against the company. Rather because of being paid by outside sources (competitors? governments?) to do so.

Reply
Power-User
Fans of Old Computers - PDP 11 - New Member

Join Date: Mar 2007
Location: In a mushroom field somewhere in Canada. Kept in the dark and fed sh--, well you know.
Posts: 312
#2

Re: Dangerous Coding Errors Revealed

01/14/2009 9:21 AM

If a programmer wants to put malicious or dangerous code in a program, then it wouldn't be to hard to trace back to that individual. If you want to spend the next 5000 years in a Federal prison, go ahead. The majority of programmers I know are hard working, law-abiding people.

As to the issue of security, programming "back doors" have been put in code since the first JMP's were used for machine language programming. That's SOP for any good programmer.

__________________
Dirt is for vegetables. Pavement is for racing.
Reply
Anonymous Poster
#3
In reply to #2

Re: Dangerous Coding Errors Revealed

01/14/2009 12:53 PM

So, now you guys have me wondering about the amount of programming that is outsourced to foreign lands, and about the immunity to prosecution that would afford an enterprising malcontent. Anyone have the data?

Reply
Power-User
Fans of Old Computers - PDP 11 - New Member

Join Date: Mar 2007
Location: In a mushroom field somewhere in Canada. Kept in the dark and fed sh--, well you know.
Posts: 312
#4
In reply to #3

Re: Dangerous Coding Errors Revealed

01/14/2009 1:01 PM

If you are going to make baseless accusations like that then sign up to the site with a username and we can discuss that.

Take responsibility for your comments.

__________________
Dirt is for vegetables. Pavement is for racing.
Reply Score 1 for Good Answer
Guru
United States - US - Statue of Liberty - New Member Hobbies - Fishing - New Member

Join Date: Nov 2007
Location: Gone to Alabama with my banjo on my knee...
Posts: 5595
Good Answers: 20
#5

Re: Dangerous Coding Errors Revealed

01/14/2009 2:23 PM

"Experts say many of these errors are not well understood by programmers."

That's the line that scares ME the most!

__________________
Veni, vidi, video - I came, I saw, I got it on film.
Reply
Guru
Popular Science - Weaponology - bwire Hobbies - Car Customizing - New Member

Join Date: Dec 2007
Location: Upper Mid-west USA
Posts: 7498
Good Answers: 97
#6
In reply to #5

Re: Dangerous Coding Errors Revealed

01/15/2009 3:04 AM

What part "expert" or Errors"?

__________________
If death came with a warning there would be a whole lot less of it.
Reply
Guru
United States - US - Statue of Liberty - New Member Hobbies - Fishing - New Member

Join Date: Nov 2007
Location: Gone to Alabama with my banjo on my knee...
Posts: 5595
Good Answers: 20
#7
In reply to #6

Re: Dangerous Coding Errors Revealed

01/15/2009 8:39 AM

"...not well understood by programmers..." That part - but I guess if they understood 'em, they could avoid 'em, huh?

__________________
Veni, vidi, video - I came, I saw, I got it on film.
Reply
Guru
Popular Science - Weaponology - bwire Hobbies - Car Customizing - New Member

Join Date: Dec 2007
Location: Upper Mid-west USA
Posts: 7498
Good Answers: 97
#8
In reply to #7

Re: Dangerous Coding Errors Revealed

01/15/2009 11:08 AM

It was the label "Expert" that tripped me, would not the expert of programming errors be a programmer too?

Is this merely a pot calling the kettle black?

__________________
If death came with a warning there would be a whole lot less of it.
Reply
Guru
United States - US - Statue of Liberty - New Member Hobbies - Fishing - New Member

Join Date: Nov 2007
Location: Gone to Alabama with my banjo on my knee...
Posts: 5595
Good Answers: 20
#9
In reply to #8

Re: Dangerous Coding Errors Revealed

01/15/2009 11:21 AM

Probably. A wise old man once told me that an "ex" is a has-been, and a "spurt" is a drip under pressure, and he'd appreciate it if I not call him either.

__________________
Veni, vidi, video - I came, I saw, I got it on film.
Reply
Reply to Blog Entry 9 comments

"Almost" Good Answers:

Check out these comments that don't yet have enough votes to be "official" good answers and, if you agree with them, vote them!
Copy to Clipboard

Users who posted comments:

Anonymous Poster (2); bwire (2); EnviroMan (3); unclefastguy (2)

Previous in Blog: Smart Car 70MPH Impact into Concrete   Next in Blog: Researchers One Step Closer To Creating Life

Advertisement