Software [In]security: Assume Nothing

By Gary McGraw and Ivan Arce
Excerpt:
Regardless of whether or not developers and architects themselves should all be taught to think like an attacker (an ongoing debate), it is certainly the case that security analysts must! Microsoft seems to have forgotten that lesson of late, with potentially dire consequences going forward.
Source: informIT











