Nous utilisons des cookies pour améliorer votre expérience de navigation. En savoir plus
Accepter
to the top
>
Posts

Posts

08 Oct 2021
Detecting errors in the LLVM release 13.0.0
Andrey Karpov
Commercial static analyzers perform deeper and fuller code analysis compared to compilers. Let's see what PVS-Studio found in the source code of the LLVM 13.0.0...
...
04 Oct 2021
Text broadcast of CppCast 293: One Lone Coder
CppCast
On this episode, Rob Irving and Jason Turner are joined by David Barr. First, they discuss Microsoft open-source calculator and an update to CMake. Then they talk about David's YouTube channel...
...
Subscribe to the newsletter
Want to receive a monthly digest of the most interesting articles and news? Subscribe!
28 Sep 2021
CWE Top 25 2021. What is it, what is it for and how is it useful for static analysis?
Mikhail Gelvikh
For the first time PVS-Studio provided support for the CWE classification in the 6.21 release. It took place on January 15, 2018. Years have passed since then and we would like to tell you about...
...
27 Sep 2021
How Can Taint Analysis Protect You from Attacks? [SQL Injenctions] [Path Traversal]
Yulia Khushnamova
Applications that use unverified data are often vulnerable to a wide variety of attacks: SQL Injection, XSS, Path Traversal, etc. Taint analysis is a technology that helps detect potential vulnerabilities caused by the use of unverified data. In this video, we'll talk …
...
27 Sep 2021
Why we need dynamic code analysis: the example of the PVS-Studio project
Alexey Govorov
In May 2021, CppCast recorded a podcast called ABI stability (CppCast #300). In this podcast, Marshall Clow and the hosts discussed rather old news — Visual Studio compilers support...
...
23 Sep 2021
Creating Roslyn API-based static analyzer for C#
Valery Komarov
After you read this article, you'll have the knowledge to create your own static analyzer for C#. With the help of the analyzer, you can find potential errors and vulnerabilities in the source...
...
22 Sep 2021
MISRA C: struggle for code quality and security
Konstantin Kochkin
A couple of years ago the PVS-Studio analyzer got its first diagnostic rules to check program code compliance with the MISRA C and MISRA C++ standards. We collected feedback and saw that our...
...
11 Sep 2021
Everything You Wanted to Know About PVS-Studio
Konstantin Volohovsky
We often get questions from developers or managers who hear about the PVS-Studio analyzer. What do they usually ask? We have a pretty extensive list! Today we've selected the most interesting questions and will try to answer them in this video.
...
07 Sep 2021
How Visual Studio 2022 ate up 100 GB of memory and what XML bombs had to do with it
Sergey Vasiliev
In April 2021 Microsoft announced a new version of its IDE – Visual Studio 2022 – while also announcing that the IDE would be 64-bit. We've been waiting for this for so long – no more 4 GB...
...
07 Sep 2021
PVS-Studio C#: what to do if project preparation takes too long or freezes?
Sergey Vasiliev
Some users of the PVS-Studio C# analyzer faced a problem: the project preparing stage either took much time or even froze. This article covers how the problem manifested itself and how we fixed...
...
View more Pagination arrow previous
Showing: - of 1579