Slashdot is powered by your submissions, so send in your scoop

 



Forgot your password?
typodupeerror
×
Programming IT Technology

The Peon's Guide To Secure System Development 347

libertynews writes "Michael Bacarella has written an article on coding and security. He starts out by saying 'Increasingly incompetent developers are creeping their way into important projects. Considering that most good programmers are pretty bad at security, bad programmers with roles in important projects are guaranteed to doom the world to oblivion.' It is well worth the time to read it."
This discussion has been archived. No new comments can be posted.

The Peon's Guide To Secure System Development

Comments Filter:
  • a good read (Score:5, Funny)

    by lactose99 ( 71132 ) on Friday November 15, 2002 @03:12PM (#4679111)
    I found 2 quotes particularly enjoyable:

    Call yourself a computer professional? Congratulations. You are responsible for the imminent collapse of civilization.

    and

    The user is pure evil.

    Very true and sometimes misunderstood bits of information.
  • by ultramk ( 470198 ) <{ultramk} {at} {pacbell.net}> on Friday November 15, 2002 @03:13PM (#4679123)
    the real question that any developer needs to ask...

    "What you need doing? Daboo!"

    going back to minding my fortress now...

    m-
  • by ProtonMotiveForce ( 267027 ) on Friday November 15, 2002 @03:13PM (#4679125)
    Yet more nonsense. Unix [in general, including Unix-typical tools] has had the most pathetic security history of any operating system.

    Cast ye not rocks from a precipice of cracked glass. Unix security is just as crappy as Windows, and has been for a lot longer.
  • Peon?! (Score:5, Funny)

    by gergi ( 220700 ) on Friday November 15, 2002 @03:16PM (#4679156)
    Everyone knows peons don't care about security. They just go around doing whatever they're told to do. Half the time, they're just standing around because there's nothing for them to do. They are oblivious to security breaches... I can't tell you how many peons I've seen getting hacked to death without them even noticing! And if they do notice, all they ever respond with is "Stop poking me!!!"

    Peons, indeed
  • by Anonymous Coward on Friday November 15, 2002 @03:20PM (#4679190)
    Writing Solid Code: Microsoft's Techniques for Developing Bug-Free C Programs by Steve Maguire (Paperback

    Also holds the world record for "Shortest Book".
  • by Wee ( 17189 ) on Friday November 15, 2002 @03:22PM (#4679209)
    One time I was in the next state visiting the wife's inlaws...

    Wouldn't your wife's in-laws be your parents?

    Sorry, couldn't resist... :-)

    -B

  • by ch-chuck ( 9622 ) on Friday November 15, 2002 @03:23PM (#4679217) Homepage
    I think it, currently, is tied back to US 1st amendment Free Speech protection - a book is free speech, it doesn't have to be correct. If you read a book, follow it's advice and lose your shirt or damage something, the book publisher probably has a legal protection against being held liable for it ("we just published the false information, you're the one who acted upon it"). However, yelling 'fire' in a crowded theatre or 'fighting words'* is not protected speech - we might need to tie at least some software with potentially damaging consequences to something like that in some situations.

    *In 1942, the U.S. Supreme Court in Chaplinsky v. New Hampshire defined fighting words as words which are likely by their very utterance to inflict injury, or which tend to incite the average person to immediate violence. The high court said that fighting words receive no First Amendment protection.

  • by Digital Mage ( 124845 ) on Friday November 15, 2002 @03:35PM (#4679307)
    1) Users are pure evil.
    2) Civilization is made up of users.
    3) Computer professionals are responsible for the collapse of civilization.
    4) Computer professionals will therefore destroy all evil. ;^)...Cool!
  • by malraid ( 592373 ) on Friday November 15, 2002 @03:48PM (#4679412)
    Hey...
    We're talking important stuff here, like e-mail and P2P networks, not silly ICBM toys

    Now getting into a more serious attitude, the DOD has always done things in a way which is completly different from Corporate America, and Consumer America, where 2.0 is much better than 1.5, because it has more features, nicer GFX, whatever. Ohh, and 8.0 is much better, even if there was never a version 7.0, or 6.0, or 5.0, etc.

    Do you guys think that the Marketing people as Microsoft were thinking about security when they gave the 8.0 number to the new MSN?? Unfortunatly, this is a marketing world, and the best marketing almost always wins. And if the loose, the marketing people try to make it look like they won anyway !!
  • by Anonymous Coward on Friday November 15, 2002 @03:50PM (#4679423)

    Surf to his web site [bacarella.com], and it's just the same old self-absorbed bullshit that so many other people put up.

    Perhaps you shouldn't be talking-- http://www.finchhaven.com/pages/computers/webmaste r.html [finchhaven.com]!

  • by Anonymous Coward on Friday November 15, 2002 @03:54PM (#4679442)
    Quite a bit less insulting to the eyes than your fine site, sir. And I wouldn't be throwing stones about obsession with computers either.

    And when are you going to update your Datacenter blog?
  • by Anonvmous Coward ( 589068 ) on Friday November 15, 2002 @03:59PM (#4679477)
    ... Isn't it great how book titles are getting worse and worse about calling their customers names? How long before we have "Total Retarded Dumbfuck's Guide to the Blindingly Obvious"?
  • by jsahol ( 621872 ) on Friday November 15, 2002 @04:02PM (#4679496)
    Agree 100%. That's the problem, you can't sell anything to mgmt unless it makes them look good somehow, and security is not as "sexy" as new features. Hence companies like Microsoft can sell the garbage they do, because they just add more bells and whistles (bloat) each version.
  • by Tack ( 4642 ) on Friday November 15, 2002 @04:05PM (#4679525) Homepage
    This is almost true, unfortunately I must ammend 2) and 4):

    1) Users are pure evil. (Given.)
    2) Civilization is made up of users and computer professionals. (Assumption)
    3) Computer professionals are responsible for the collapse of civilization. (Given.)
    4) Computer professionals will therefore destroy all evil and take themselves out in the process. (Conclusion.)

    Jason.
  • by Anonymous Coward on Friday November 15, 2002 @04:58PM (#4679947)
    da be good choice maaan
  • by Dalcius ( 587481 ) on Friday November 15, 2002 @05:17PM (#4680080)
    Jesus, dude. Ouch.

    Parent of the parent: read own advice column. k thx d00d

    =)

Real Programmers don't eat quiche. They eat Twinkies and Szechwan food.

Working...