• DocumentCode
    3559777
  • Title

    Automated Code Review Tools for Security

  • Author

    McGraw, Gary

  • Volume
    41
  • Issue
    12
  • fYear
    2008
  • Firstpage
    108
  • Lastpage
    111
  • Abstract
    Computer security has experienced important fundamental changes over the past decade. The most promising developments in security involve arming software developers and architects with the knowledge and tools they need to build more secure software. Among the many security tools available to software practitioners, static analysis tools for automated code review are the most effective. The paper presents how they work and why all developers should use them.
  • Keywords
    program diagnostics; security of data; automated code review tools; computer security; secure software; software architects; software developers; static analysis tools; Application software; Best practices; Computer hacking; Computer security; IP networks; Instruments; Local area networks; Programming profession; Risk analysis; Software tools; code review; how things work; software development; software security; static analysis tools;
  • fLanguage
    English
  • Journal_Title
    Computer
  • Publisher
    ieee
  • ISSN
    0018-9162
  • Type

    jour

  • DOI
    10.1109/MC.2008.514
  • Filename
    4712512