📄 00000012.htm
字号:
<HTML><HEAD> <TITLE>BBS水木清华站∶精华区</TITLE></HEAD><BODY><CENTER><H1>BBS水木清华站∶精华区</H1></CENTER>作者: asee (四楼咖啡馆) <BR>标题: [转录](fwd) Re: Safe C Programming Manuals? Books? <BR>时间: Sat Aug 30 22:40:30 1997 <BR> <BR>※ [本文转录自 asee 信箱] <BR> <BR>作者: <A HREF="mailto:asee@neto.net">asee@neto.net</A> <BR>标题: (fwd) Re: Safe C Programming Manuals? Books? <BR>时间: Sat Aug 30 22:39:57 1997 <BR> <BR>Message-ID: <<A HREF="mailto:340373C1.B06@pacificnet.net>">340373C1.B06@pacificnet.net></A> <BR>Date: Tue, 26 Aug 1997 17:25:38 -0700 <BR>From: "<A HREF="mailto:osiris@pacificnet.net"">osiris@pacificnet.net"</A> <<A HREF="mailto:osiris@pacificnet.net>">osiris@pacificnet.net></A> <BR>Reply-To: <A HREF="mailto:osiris@pacificnet.net">osiris@pacificnet.net</A> <BR>Organization: <A HREF="mailto:osiris@pacificnet.net">osiris@pacificnet.net</A> <BR>X-Mailer: Mozilla 3.01Gold (Win95; I) <BR>MIME-Version: 1.0 <BR>Newsgroups: comp.security.unix <BR>To: Apropos of Nothing <<A HREF="mailto:gabe@sover.net>">gabe@sover.net></A> <BR>CC: <A HREF="mailto:osiris@pacificnet.net">osiris@pacificnet.net</A> <BR>Subject: Re: Safe C Programming Manuals? Books? <BR>References: <gabe-<A HREF="mailto:2608970956500001@pm1a11.bratt.sover.net>">2608970956500001@pm1a11.bratt.sover.net></A> <BR>Content-Type: text/plain; charset=us-ascii <BR>Content-Transfer-Encoding: 7bit <BR>NNTP-Posting-Host: ppp-208-19-49-89.isdn.jetlink.net <BR>X-NNTP-Posting-Host: ppp-208-19-49-89.isdn.jetlink.net <BR>Lines: 194 <BR>Path: news.neto.net!feeder.seed.net.tw!spring.edu.tw!logbridge.uoregon.edu!su-news-hub1.bbnplanet.com!cpk-news-hub1.bbnplanet.com!cam-news-hub1.bbnplanet.com!news.bbnplanet.com!news-feed1.tiac.net!news-dc-5.sprintlink.net!news-pull.sprintlink.net!news-in-east.sprintlink.net!news.sprintlink.net!Sprint!206.72.64.22!news.jetlink.net!ppp-208-19-49-89.isdn.jetlink.net <BR>Xref: news.neto.net comp.security.unix:147 <BR> <BR>Here are some interesting resources that may get you started at least: <BR> <BR>Secure UNIX Programming Techniques <BR>(Excerpts and info from Chapter 23 (page 701) of Practical UNIX and <BR>Internet Security by <BR>Simson Garfinkel and Gene Spafford, O'Reilly & Associates, <BR>Sebastopol, CA, 1996) <BR><A HREF="ftp://ftp.auscert.org.au/pub/auscert/papers/secure_programming_checklist">ftp://ftp.auscert.org.au/pub/auscert/papers/secure_programming_checklist</A> <BR> <BR>Practical UNIX & Internet Security, 2nd Edition <BR>By Simson Garfinkel & Gene Spafford <BR>2nd Edition April 1996 <BR>1-56592-148-8, Order Number: 1488 <BR>1004 pages, $39.95 <BR><A HREF="http://www.ora.com/catalog/puis/index.html">http://www.ora.com/catalog/puis/index.html</A> <BR> <BR>CGI SEcurity Tutorial <BR>[Michael Van Biesbrouck] <BR><A HREF="http://www.thinkage.on.ca/~mlvanbie/cgisec/">http://www.thinkage.on.ca/~mlvanbie/cgisec/</A> <BR> <BR>Enhancing Security of Unix Systems <BR>Danny Smith & the Australian Computer Emergency Response Team <BR>c/- Prentice Centre <BR>The University of Queensland <BR>Qld. 4072. <BR><A HREF="mailto:mailto:D.Smith@auscert.org.au">mailto:D.Smith@auscert.org.au</A> <BR>(Paper discussing common security problems and programming mistakes.) <BR><A HREF="http://www.telstra.com.au/pub/docs/security/sert-doc/unix-security.html">http://www.telstra.com.au/pub/docs/security/sert-doc/unix-security.html</A> <BR> <BR>The PERL Security Man Page -- a must <BR><A HREF="http://www.metronet.com/1h/perlinfo/perl5/manual/perlsec.html">http://www.metronet.com/1h/perlinfo/perl5/manual/perlsec.html</A> <BR> <BR>Safe CGI Programming -- great <BR>Paul Phillips <BR><A HREF="http://valley-internet.com/support/cgi/safe-cgi.html">http://valley-internet.com/support/cgi/safe-cgi.html</A> <BR>Corrections to that document: <BR><A HREF="http://www-ns.rutgers.edu/www-security/archives/0816.html">http://www-ns.rutgers.edu/www-security/archives/0816.html</A> <BR> <BR>Surfing Between the Flags: Security on the Web <BR>Catherine Allen, <BR>Security Programmer, <BR>Australian Computer Emergency Response Team, AUSCERT, <BR>c/- Prentice Centre, The University of Queensland, Brisbane, Queensland <BR>4072 Australia. <BR><A HREF="http://www.auscert.org.au/information/Papers/Surfing_Between_the_Flags.html">http://www.auscert.org.au/information/Papers/Surfing_Between_the_Flags.html</A> <BR> <BR>Common Gateway Interface Programming <BR>(Security and CGI Scripts) <BR><A HREF="http://www.erin.gov.au/technical/CGI/programming/programming.html">http://www.erin.gov.au/technical/CGI/programming/programming.html</A> <BR> <BR> <BR> <BR>The World Wide Web Security FAQ <BR>Lincoln Stein <BR>(Clean "untainted" PERL calls, etc, etc.) <BR><A HREF="http://www.genome.wi.mit.edu/WWW/faqs/www-security-faq.html">http://www.genome.wi.mit.edu/WWW/faqs/www-security-faq.html</A> <BR>and <BR><A HREF="http://www.genome.wi.mit.edu/WWW/faqs/wwwsf5.html">http://www.genome.wi.mit.edu/WWW/faqs/wwwsf5.html</A> (Safe scripts in PERL) <BR> <BR>Web Security Sourcebook -- excellent <BR>Avi Rubin, Dan Geer, and Marcus Ranum <BR>Wiley Computer Publishing <BR>Jun97; $29.99US; 0-471-18148-X 350 pages <BR><A HREF="http://www.amazon.com/exec/obidos/ISBN%3D047118148X/smartbookscomA/7262-8705911-407497">http://www.amazon.com/exec/obidos/ISBN%3D047118148X/smartbookscomA/7262-8705911-407497</A> <BR> <BR>Web Security & Commerce -- excellent <BR>Simson Garfinkel with Gene Spafford <BR>O'Reilly & Associates <BR>Jun97; $32.95US; 1-56592-269-7 <BR>506 pages <BR><A HREF="http://www.amazon.com/exec/obidos/ISBN%3D1565922697/smartbookscomA/7262-8705911-407497">http://www.amazon.com/exec/obidos/ISBN%3D1565922697/smartbookscomA/7262-8705911-407497</A> <BR> <BR>Internet Security Professional Reference -- quite good <BR>Derek Atkins, Paul Buis, Chris Hare, Robert Kelley, et al. <BR>New Riders, Aug.97; $65.00US; 1-56205-760-X <BR><A HREF="http://www.amazon.com/exec/obidos/ISBN%3D156205760X/smartbookscomA/7262-8705911-407497">http://www.amazon.com/exec/obidos/ISBN%3D156205760X/smartbookscomA/7262-8705911-407497</A> <BR> <BR>Maximum Security: A Hacker's Guide to <BR>Protecting Your Internet Site and Network -- pretty good <BR>Sams.net. Jul.97; $49.99US; 1575212684 <BR> <BR>Internet TCP/IP Network Security: Securing <BR>
⌨️ 快捷键说明
复制代码
Ctrl + C
搜索代码
Ctrl + F
全屏模式
F11
切换主题
Ctrl + Shift + D
显示快捷键
?
增大字号
Ctrl + =
减小字号
Ctrl + -