Our website uses cookies to enhance your browsing experience.
Accept
to the top

Webinar: Let's make a programming language. Lexer - 29.04

>
>
Posts: #Security

Posts: # Security

Dec 21 2018
Shoot yourself in the foot when handling input data
Sergey Vasiliev
The linking concept of today's article differs from usual. This time it is not one project, the source code of which was analyzed, but a number of warnings related to one and the same diagnostic...
...
Technologies used in the PVS-Studio code analyzer for finding bugs and potential vulnerabilities
Andrey Karpov
A brief description of technologies used in the PVS-Studio tool, which let us effectively detect a large number of error patterns and potential vulnerabilities. The article describes...
...
Subscribe to the newsletter
Want to receive a monthly digest of the most interesting articles and news? Subscribe!
Aug 01 2018
We Checked the Android Source Code by PVS-Studio, or Nothing is Perfect
Andrey Karpov
Development of large complex projects is impossible without the use of programming techniques and tools helping to monitor the quality of the code. First, it requires a literate coding standard...
...
Jul 25 2018
PVS-Studio as SAST solution
Andrey Karpov
Until recently, in our articles we have positioned PVS-Studio as a tool for detecting errors in code. While we almost never regarded PVS-Studio in a security context. We will try to remedy...
...
Jun 13 2018
Attacks via external data and means of dealing with them
Sergey Vasiliev
For a start, it is worth to remember what is vulnerability, and why one shouldn't trust data received from outside. The vulnerabilities are simple bugs that will make you famous all over...
...
Mar 28 2018
PVS-Studio is now available on macOS: 64 weaknesses in the Apple's XNU Kernel
Andrey Karpov
A new version of the PVS-Studio analyzer 6.23 is working under macOS, which allows you to check the projects written in C and C++. Our team decided to perform a XNU Kernel check to coincide it...
...
Jan 31 2018
Chromium: Use of Untrusted Data
Andrey Karpov
We'd like to present the series of articles dealing with the recommendations on writing code of high quality using the examples of errors found in the Chromium project. This is the fifth part...
...
Oct 30 2017
What Is Wrong with Vulnerabilities in C# Projects?
Sergey Vasiliev
This small article is an intermediate result of a search on a topic of already known vulnerabilities in open source C# projects. I wanted to look at the examples of code that was vulnerable...
...
Jul 12 2017
27 000 Errors in the Tizen Operating System
Andrey Karpov
This article will demonstrate that during the development of large projects static analysis is not just a useful, but a completely necessary part of the development process. This article is the...
...
Jun 20 2017
How Can PVS-Studio Help in the Detection of Vulnerabilities?
Sergey Vasiliev
A vulnerability in terms of computer security, is a flaw in the system allowing someone to violate the integrity, or deliberately cause a malfunction, of the program. Practice shows that even...
...
View more Pagination arrow previous
Showing: - of 61