search menu icon-carat-right cmu-wordmark

August/September 2014 Edition of the Secure Coding Newsletter

Newsletter
The CERT Secure Coding Team describes efforts to update the CERT C++ Secure Coding Standard and announces a new technical report on compiler-assisted memory safety checking.
Publisher

Software Engineering Institute

Abstract

In the August/September edition of the newsletter, team members describe their work to update the CERT C++ Secure Coding Standard

Team members also published a new SEI technical report, Performance of Compiler-Assisted Memory Safety Checking, which describes the criteria for deploying a compiler-based memory safety checking tool and the performance that can be achieved with two such tools whose source code is freely available.

The team continues to perform Source Code Analysis Laboratory (SCALe) assessments, which has resulted in team members making many improvements to The CERT Oracle Secure Coding Standard for Java in efforts to evolve rules to be clearer and more precise, and to simplify conformance.