<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Hacking the Code: Auditor&#8217;s Guide to Writing Secure Code for the Web</title>
	<atom:link href="http://www.securitt.com/hacking-the-code-auditors-guide-to-writing-secure-code-for-the-web/feed" rel="self" type="application/rss+xml" />
	<link>http://www.securitt.com/hacking-the-code-auditors-guide-to-writing-secure-code-for-the-web</link>
	<description>Internet Security Consultant Services of West Virginia</description>
	<lastBuildDate>Wed, 08 Feb 2012 09:58:47 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
	<item>
		<title>By: Garot M. Conklin</title>
		<link>http://www.securitt.com/hacking-the-code-auditors-guide-to-writing-secure-code-for-the-web/comment-page-1#comment-541</link>
		<dc:creator>Garot M. Conklin</dc:creator>
		<pubDate>Sat, 06 Feb 2010 05:46:56 +0000</pubDate>
		<guid isPermaLink="false">http://www.securitt.com/hacking-the-code-auditors-guide-to-writing-secure-code-for-the-web/#comment-541</guid>
		<description>In my never ending attempt to educate myself on web application security I thought it would be a great idea to look at this from the developer perspective.  This text is a great piece on the ASP.NET side of development and security. It does a great job of showing what the developer may normally code and why that is NOT security oriented.  It is a great tool for bridging the gap between security team and developer team so that you can speak intelligently on both even though you are NOT a developer or security professional.  If you have an ASP.NET dev shop in your environment you should have someone if not everyone from your dev and security teams read this book to facilitate a more open line of commination between the two. Highly recommended.
Rating: 5 / 5</description>
		<content:encoded><![CDATA[<p>In my never ending attempt to educate myself on web application security I thought it would be a great idea to look at this from the developer perspective.  This text is a great piece on the ASP.NET side of development and security. It does a great job of showing what the developer may normally code and why that is NOT security oriented.  It is a great tool for bridging the gap between security team and developer team so that you can speak intelligently on both even though you are NOT a developer or security professional.  If you have an ASP.NET dev shop in your environment you should have someone if not everyone from your dev and security teams read this book to facilitate a more open line of commination between the two. Highly recommended.<br />
Rating: 5 / 5</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Carlos Perez</title>
		<link>http://www.securitt.com/hacking-the-code-auditors-guide-to-writing-secure-code-for-the-web/comment-page-1#comment-540</link>
		<dc:creator>Carlos Perez</dc:creator>
		<pubDate>Sat, 06 Feb 2010 03:52:45 +0000</pubDate>
		<guid isPermaLink="false">http://www.securitt.com/hacking-the-code-auditors-guide-to-writing-secure-code-for-the-web/#comment-540</guid>
		<description>If one is programming any web application in ASP.Net this is the book to read. It is waht is spected from Mark Burnett. I find my self comming back to the book time a time again to get ideas on ways to make my code more secure. This is a must buy for anyone who writes web applications.
Rating: 5 / 5</description>
		<content:encoded><![CDATA[<p>If one is programming any web application in ASP.Net this is the book to read. It is waht is spected from Mark Burnett. I find my self comming back to the book time a time again to get ideas on ways to make my code more secure. This is a must buy for anyone who writes web applications.<br />
Rating: 5 / 5</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Bilen Çekiç</title>
		<link>http://www.securitt.com/hacking-the-code-auditors-guide-to-writing-secure-code-for-the-web/comment-page-1#comment-539</link>
		<dc:creator>Bilen Çekiç</dc:creator>
		<pubDate>Sat, 06 Feb 2010 02:33:45 +0000</pubDate>
		<guid isPermaLink="false">http://www.securitt.com/hacking-the-code-auditors-guide-to-writing-secure-code-for-the-web/#comment-539</guid>
		<description>english is not my native language but this book has a clear language that is easy to understant and examples are very good. Writer tells many experiences that he faced at past about security, it&#039;s vulnarables and precautions.
&lt;br /&gt;I highly recommend this book. 
Rating: 5 / 5</description>
		<content:encoded><![CDATA[<p>english is not my native language but this book has a clear language that is easy to understant and examples are very good. Writer tells many experiences that he faced at past about security, it&#8217;s vulnarables and precautions.<br />
<br />I highly recommend this book.<br />
Rating: 5 / 5</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Kevin Beaver</title>
		<link>http://www.securitt.com/hacking-the-code-auditors-guide-to-writing-secure-code-for-the-web/comment-page-1#comment-538</link>
		<dc:creator>Kevin Beaver</dc:creator>
		<pubDate>Sat, 06 Feb 2010 00:24:30 +0000</pubDate>
		<guid isPermaLink="false">http://www.securitt.com/hacking-the-code-auditors-guide-to-writing-secure-code-for-the-web/#comment-538</guid>
		<description>Hacking the Code is a must read if you want to pick apart .NET Web applications in the name of better security. More people in development and IT need to read books like this. I like how it focuses on ASP.NET - the language that a large portion of Web applications are developed in today. The book covers the important areas of securing applications and shows some good examples. Appendix A also has some good ASP.NET code samples for real-world concerns. 
&lt;br /&gt;
&lt;br /&gt;I especially like the coverage on authentication mechanisms which is something that&#039;s often taken for granted by developers but where I tend to find a lot of the weaknesses in the work I do. Plus it doesn&#039;t just focus on the technical side of things with the coverage of users awareness and policies. Overall, very good at covering the root of many of our security problems.
Rating: 4 / 5</description>
		<content:encoded><![CDATA[<p>Hacking the Code is a must read if you want to pick apart .NET Web applications in the name of better security. More people in development and IT need to read books like this. I like how it focuses on ASP.NET &#8211; the language that a large portion of Web applications are developed in today. The book covers the important areas of securing applications and shows some good examples. Appendix A also has some good ASP.NET code samples for real-world concerns. </p>
<p>I especially like the coverage on authentication mechanisms which is something that&#8217;s often taken for granted by developers but where I tend to find a lot of the weaknesses in the work I do. Plus it doesn&#8217;t just focus on the technical side of things with the coverage of users awareness and policies. Overall, very good at covering the root of many of our security problems.<br />
Rating: 4 / 5</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: A. Shefer</title>
		<link>http://www.securitt.com/hacking-the-code-auditors-guide-to-writing-secure-code-for-the-web/comment-page-1#comment-537</link>
		<dc:creator>A. Shefer</dc:creator>
		<pubDate>Fri, 05 Feb 2010 23:44:27 +0000</pubDate>
		<guid isPermaLink="false">http://www.securitt.com/hacking-the-code-auditors-guide-to-writing-secure-code-for-the-web/#comment-537</guid>
		<description>The authors can&#039;t connect two words together. Don&#039;t waste money on this book.
Rating: 1 / 5</description>
		<content:encoded><![CDATA[<p>The authors can&#8217;t connect two words together. Don&#8217;t waste money on this book.<br />
Rating: 1 / 5</p>
]]></content:encoded>
	</item>
</channel>
</rss>

