February 22, 2008 2:59 PM PST
Security Bites Podcast: Why software sucks
Listen Now
Robert Vamosi talks software vulnerabilities with Chris Wysopal of Veracode.
Listen to more episodes of this podcast at the Security Bites podcast archive.
Subscribe to this podcast
Subscribe to the podcast rss feed,
This week Robert Vamosi talks to Chris Wysopal of Veracode about software vulnerabilities.
Wysopal (also known as Weld Pond) knows a thing or two about software vulnerabilities. In the 1990s, he was a member of L0pht, a Boston-based hacking think tank. He also started VulnWatch, an online mailing list that predated Full Disclosure. He has since worked at both @Stake and Symantec.
Most recently, Wysopal co-founded Veracode, a company that provides binary analysis to software developers to find flaws before they ship their software.
But on the subject of creating an independent seal of approval that customers can trust when they purchase new software applications, Wysopal doesn't see any independent third-parties soon to emerge.
Continue the discussion

