Webinar 28.06.2017, 14:15 Uhr

Modern Software Security Development Lifecycle

Modern software development requires design and build of more secure software by addressing security compliance requirements while decreasing development cost.
Reducing the opportunities for attackers to exploit a potential weak spot or vulnerability requires analysing the overall attack surface, and includes restricting access to system services. Applying a structured approach to threat scenarios during design helps a team identify security vulnerabilities, determine risks from those threats, and establish appropriate mitigations. This session illustrates the core concepts of the Microsoft Security Development Lifecycle (SDL) and the security activities to perform to claim compliance with the SDL process. Practical applications of tools for understanding your attack surface (Attack Surface Analyzer), finding and addressing system security issues (Threat Modeling Tool), and a simple fuzzer designed to test for potential denial of service vulnerabilities (MiniFuzz).

Jetzt 1 Monat kostenlos testen!

Sie wollen zukünftig auch von den Vorteilen eines plus-Abos profitieren? Werden Sie jetzt dotnetpro-plus-Kunde.
  • + Digitales Kundenkonto,
  • + Zugriff auf das digitale Heft,
  • + Zugang zum digitalen Heftarchiv,
  • + Auf Wunsch: Weekly Newsletter,
  • + Sämtliche Codebeispiele im digitalen Heftarchiv verfügbar