source code
Photos: Google takes the wrapping off Chrome OS
Photo Google released the source code for Chrome OS on Thursday, beginning the process of producing a browser-based operating system by the end of 2010 for lower-end PCs called netbooks. Although Linux runs... [23 Nov 2009]
Doing business with citizen developers: Beware the legal pitfalls
Comment Although somewhat similar to the development of the open source community, in this case individual developers are creating code for profit and likely on a closed-source basis. Is it the... [23 Nov 2009]
Firefox 3.6 beta aims to improve stability
The new beta — for Windows, Mac and Linux — includes a component directory lockdown that makes it harder for other software to meddle with the open-source browser. Mozilla released a third beta of Firefox 3.6 on... [19 Nov 2009]
Secure at the Source: Implementing Source Code Vulnerability Testing in the Software Development Life Cycle
White Paper Rather it is to document a series of workflow models to help guide how automated source code scanning can be implemented into an existing development process. The purpose of this paper is not to describe... [12 Nov 2009]
The Path to a Secure Application: A Source Code Security Review Checklist
White Paper How, then, can organizations ensure their applications are secure, and avoid the cost and public relations fallout - not to mention stock price downturn - inherent in issuing numerous security patches, or worse, having to explain to... [12 Nov 2009]
The Security Implications of Ajax and Web Services
White Paper The Ounce source code analysis solution provides the same significant security value and benefit to organizations developing Ajax and Web Services (WS) applications as it does for organizations... [12 Nov 2009]
Knowledge Is Power: Your Software Is Trying to Tell You Something
White Paper Buried in the millions of lines of source code that power organization are the vulnerabilities that put data at risk, and the security mechanisms that protect it. Armed with the right... [12 Nov 2009]
Two Security Vulnerabilities in the Spring Framework's MVC
White Paper While performing source-code security review engagements, members of the Ounce Labs' Advanced Research Team (ART) discovered and exploited the following two vulnerabilities in the commonly used Spring... [12 Nov 2009]
Defeating IRC Bots on the Internal Network
White Paper Fuelled by financial incentives and readily available source code, malware authors pursue aggressively the development of newer modules and the exploitation of code into these bots. The... [12 Nov 2009]
Managing Identity Theft Risk in Software: The Need for Software Risk Analysis
White Paper By scanning the source code itself, this technology generates a practical, reliable security assessment of software in legacy systems or during development. Ounce Labs offers organizations a way to... [12 Nov 2009]
Light Weight Framework for RFID Applications
White Paper The customers can switch from one RFID vendor to other without modifying the source code of the existing application. This white paper elucidates the development of a Framework for RFID applications,... [12 Nov 2009]
Backdoors, Malicious Code, and the Ounce Solution
White Paper The security risks from backdoors cannot be mitigated by perimeter security measures such as firewalls because the vulnerabilities are introduced into the application source code. A backdoor allows a... [12 Nov 2009]
Getting Started with LINQ to XML
White Paper When using the features provided by LINQ, the developer now has the capability to query different types of data structures with a SQL-like query language that is native to the source code. LINQ stands... [03 Nov 2009]
The benefits of IBM. The savings of open source.
White Paper Recently, Open Source Software has been gaining in popularity due to the ability it provides users to view and modify source code. Another attraction is the perceived cost savings. Read... [20 Oct 2009]
Cheat Sheet: Symbian
Cheat Sheet Being open source is a way for the Symbian software to try and stay in the game by speeding up the development of a unified and competitive OS platform, and also by making the OS more attractive to developers, removing... [01 Oct 2009]