SC12 Home > SC12 Schedule > SC12 Presentation - Secure Coding Practices for Grid and Cloud Middleware and Services

SCHEDULE: NOV 10-16, 2012

When viewing the Technical Program schedule, on the far righthand side is a column labeled "PLANNER." Use this planner to build your own schedule. Once you select an event and want to add it to your personal schedule, just click on the calendar icon of your choice (outlook calendar, ical calendar or google calendar) and that event will be stored there. As you select events in this manner, you will have your own schedule to guide you through the week.

Secure Coding Practices for Grid and Cloud Middleware and Services

SESSION: Secure Coding Practices for Grid and Cloud Middleware and Services

EVENT TYPE: Tutorials

TIME: 8:30AM - 12:00PM

Presenter(s):Barton Miller, Elisa Heymann

ROOM:251-B

ABSTRACT:
Security is crucial to the software that we develop and use. With the growth of both Grid and Cloud services, security is becoming even more critical. This tutorial is relevant to anyone wanting to learn about minimizing security flaws in the software they develop. We share our experiences gained from performing vulnerability assessments of critical middleware. You will learn skills critical for software developers and analysts concerned with security. This tutorial presents coding practices subject to vulnerabilities, with examples of how they commonly arise, techniques to prevent them, and exercises to reinforce them. Most examples are in Java, C, C++, Perl and Python, and come from real code belonging to Cloud and Grid systems we have assessed. This tutorial is an outgrowth of our experiences in performing vulnerability assessment of critical middleware, including Google Chrome, Wireshark, Condor, SDSC Storage Resource Broker, NCSA MyProxy, INFN VOMS Admin and Core, and many others.

Chair/Presenter Details:

Barton Miller - University of Wisconsin-Madison

Elisa Heymann - Universidad Autonoma de Barcelona

Add to iCal  Click here to download .ics calendar file

Add to Outlook  Click here to download .vcs calendar file

Add to Google Calendarss  Click here to add event to your Google Calendar

Secure Coding Practices for Grid and Cloud Middleware and Services

SESSION: Secure Coding Practices for Grid and Cloud Middleware and Services

EVENT TYPE:

TIME: 8:30AM - 12:00PM

Presenter(s):Barton Miller, Elisa Heymann

ROOM:251-B

ABSTRACT:
Security is crucial to the software that we develop and use. With the growth of both Grid and Cloud services, security is becoming even more critical. This tutorial is relevant to anyone wanting to learn about minimizing security flaws in the software they develop. We share our experiences gained from performing vulnerability assessments of critical middleware. You will learn skills critical for software developers and analysts concerned with security. This tutorial presents coding practices subject to vulnerabilities, with examples of how they commonly arise, techniques to prevent them, and exercises to reinforce them. Most examples are in Java, C, C++, Perl and Python, and come from real code belonging to Cloud and Grid systems we have assessed. This tutorial is an outgrowth of our experiences in performing vulnerability assessment of critical middleware, including Google Chrome, Wireshark, Condor, SDSC Storage Resource Broker, NCSA MyProxy, INFN VOMS Admin and Core, and many others.

Chair/Presenter Details:

Barton Miller - University of Wisconsin-Madison

Elisa Heymann - Universidad Autonoma de Barcelona

Add to iCal  Click here to download .ics calendar file

Add to Outlook  Click here to download .vcs calendar file

Add to Google Calendarss  Click here to add event to your Google Calendar