Nous utilisons des cookies pour améliorer votre expérience de navigation. En savoir plus
Accepter
to the top
>
Posts

Posts

SAST in Secure SDLC: 3 reasons to integrate it in a DevSecOps pipeline
Sergey Vasiliev
Vulnerabilities produce enormous reputational and financial risks. That's why many companies are fascinated by security and desire to build a secure development life cycle (SSDLC). So, today...
...
18 Avr 2022
How PVS-Studio prevents rash code changes, example N5
Andrey Karpov
The PVS-Studio static analyzer encompasses the symbolic execution mechanism. And today we have a great opportunity to demonstrate how this feature helps find...
...
Subscribe to the newsletter
Want to receive a monthly digest of the most interesting articles and news? Subscribe!
Trojan Source: Invisible Vulnerabilities
Guest
We present a new type of attack in which source code is maliciously encoded so that it appears different to a compiler and to the human eye. This attack exploits subtleties in text-encoding...
...
13 Avr 2022
PVS-Studio 7.18: updates and enhancements
Sergey Vasiliev
Meet the latest PVS-Studio release — 7.18. This article will tell you about how we improved the analysis of modern C++, the search of security defects from the OWASP Top 10 list, and a new...
...
12 Avr 2022
Trojan Source attack for introducing invisible vulnerabilities
Guest
Researchers from the University of Cambridge described a technique that allows inserting invisible adversarial code in the reviewed source texts. The attack (CVE-2021-42574) is called Trojan...
...
08 Avr 2022
PVS-Studio static analyzer to recheck Unity
Artem Rovenskii
Unity is one of the most popular game engines. It helps create many excellent cross-platform projects. It's been 4 years since the last time we checked Unity's source code. Time has come again to...
...
05 Avr 2022
What's with the PVS-Studio's coverage of Toyota ITC Benchmark?
Alexander Kurenev
Toyota ITC Benchmark is a synthetic test set for C and C++. It consists of approximately 650 examples, and it's designed for testing code analyzers. This article is an answer to the question...
...
01 Avr 2022
Using PVS-Studio with JetBrains Rider
Evgeniya Eltukova
In this video, you'll learn how to install and set up the PVS-Studio plugin for JetBrains Rider and how to run the analysis.
...
31 Mar 2022
Checking Barotrauma with the PVS-Studio static analyzer
Mikhail Evtihevich
Barotrauma is an indie game where you can steer a submarine, hide from monsters, and even play the accordion to save your ship from going down. The Barotrauma project is developed by Undertow...
...
25 Mar 2022
Looking for errors in the C# code of the Eto.Forms GUI framework
Vadim Kuleshov
GUI frameworks are becoming increasingly popular: new ones appear, and old ones get a new life. At PVS-Studio, we are watching this trend very closely. Today we'll examine suspicious code...
...
View more Pagination arrow previous
Showing: - of 1579