"Secure Programming With Static Analysis"

I finished this book a couple of days ago. The title is pretty self-explanatory in terms of the book's content, although I found it light on the static analysis part. That doesn't make it a bad book per-se; it has a decent amount of good information. But if you're looking for a book on static analysis, this isn't going to get you very far. Overall I'd recommend the book with the caveat that the majority of the material discusses security. I don't do any C programming so a fair amount of the information doesn't apply to what I do on a day-to-day basis [1] but I still found the tricks that hackers do to nasty, unexpected things quite fascinating.

[1] To be fair, the book also covers Java and discusses .NET here and there, but most of the examples used C.

Posted at 02.06.2009 06:35:50 AM CST

