Develop Secure Applications using Microsoft SDL
by Tanmay on Jan.06, 2010, under Microsoft
The Microsoft SDL – Developer Starter Kit provides a compilation of baseline developer security training materials on the core Microsoft Security Development Lifecycle (SDL) topics. This helps you understand and maintain the correct process inorder to design your applications securely.
Microsoft SDLÂ provides Microsoft Office PowerPoint slides, speaker notes, train-the-trainer audio files, and sample comprehension questions and reference material.
It covers the following topics :
- secure design principles
- secure implementation principles
- secure verification principles
- SQL injection
- cross-site scripting
- code analysis
- banned application programming interfaces (APIs)
- buffer overflows
- source code annotation language
- security code review
- compiler defenses
- fuzz testing
- Microsoft SDL threat modeling principles
- the Microsoft SDL threat modeling tool