How to write more secure code?

Post date: 2019-03-21 04:35:30
Views: 258
No matter how fancy the password checking scheme is, or how many encryption steps it involves, isn't there usually a single "if" statement somewhere? If so, other security vulnerabilities could allow that to be overwritten pretty simply, to skip the check. How could code be written more securely?

I don't usually write high-security stuff, so maybe there are already well-known solutions that are used by ssh or pam or whatever. If so, I'd like to know about them.

Certainly, a well-written program will have no buffer overflows, so the code will not be alterable in memory. But it seems like it'd be safer if the basic security mechanisms still functioned even if some other part of the system is written poorly.
Number of Comments
Please click Here to read the full story.
 
Other Top and Latest Questions:
Delicious in Dungeon: Sea Serpent
Frieren: Beyond Journey's End: Well-Laid Plans
Israel's war Cabinet is locked between restraint and revenge
Requesting RV Rental Recommendations in Reno
Self-made millionaire who retired at 35: The first time I felt financially secure, I was 'living small' and spending 'a lot less'
Work is an infinite spiral of ennui and tedium. Someone help me.
Treasury Department plans to impose new sanctions on Iran after Israel attack
Justices question obstruction charge in Jan 6 rioter prosecution, which could affect Trump's case
AMD rolls out its latest chips for AI PCs as competition with Nvidia and Intel heats up
Biden administration releases draft text of student loan forgiveness plan. Here's what borrowers need to know