Thanks to everyone who contributed to making this effort a success.
Major Contributors
Aaron Ballman has over a decade of experience writing commercial compilers for various languages, and is a Security Software Engineer for CERT. He is an active developer on the clang open source C/C++/Objective-C compiler. When he's not writing code, Aaron also enjoys being outside, fishing, and reading a good book in his hammock. |
---|
Robert C. Seacord is a senior vulnerability analyst in the CERT® Program at the Software Engineering Institute (SEI) in Pittsburgh, PA where he leads the Secure Coding Initiative. Robert is the author of The CERT C Secure Coding Standard (Addison-Wesley, 2008) and Secure Coding in C and C++ (Addison-Wesley, 2002) as well as co-author of two other books. Robert is an adjunct professor at Carnegie Mellon University and a technical expert for ISO/IEC JTC1/SC22/WG14, the international standardization working group for the programming language C. |
---|
David Svoboda has been the primary developer on a diverse set of software development projects at Carnegie Mellon University since 1991. Hi projects have ranged from hierarchical chip modeling and social organization simulation to automated machine translation (AMT). His KANTOO AMT software, developed in 1996, is still in production use at Caterpillar. He has over 13 years of Java development experience, starting with Java 2, and his Java projects include Tomcat servlets and Eclipse plug-ins. He has taught Secure Coding in C and C++ all over the world to various groups in the military, government, and banking industries. |
---|
Contributors
Arbob Ahmad, Juan Alvarado, Dave Aronson, Abhishek Arya, Aaron Ballman, BJ Bayha, Levi Broderick, Hal Burch, Steven Christey, Ciera Christopher, Geoff Clare, Joe Damato, Stephen C. Dewhurst, Susan Ditmore, Chad Dougherty, Mark Dowd, Xiaoyi Fei, William Fithen, Hallvard Furuseth, Jeffrey Gennari, Douglas A. Gwyn, Shaun Hedrick, Christina Johns, David Keaton, Takuya Kondo, Masaki Kubo, Richard Lane, Stephanie Wan-Ruey Lee, Jonathan Leffler, Fred Long, Gregory K. Look, Nat Lyle, Larry Maccherone, John McDonald, Dhruv Mohindra, Bhaswanth Nalabothula, Justin Pincar, Randy Meyers, David M. Pickett, Thomas Plum, Dan Saks, Robert C. Seacord, Martin Sebor, David Svoboda, Chris Taschner, Ben Tucker, Fred J. Tydeman, Nick Stoughton, Wietse Venema, Alex Volkovitsky, Grant Watters, and Gary Yuan.
Reviewers
Kevin Bagust, Greg Beeley, Arjun Bijanki, John Bode, Stewart Brodie, G Bulmer, Kyle Comer, Sean Connelly, Ale Contenti, Tom Danielsen, Török Edwin, Brian Ewins, Justin Ferguson, Stephen Friedl, Samium Gromoff, Kowsik Guruswamy, Peter Gutmann, Richard Heathfield, Darryl Hill, Paul Hsieh, Ivan Jager, Steven G. Johnson, Anders Kaseorg, Jerry Leichter, Nicholas Marriott, Scott Meyers, Eric Miller, Ron Natalie, Heikki Orsila, Dan Plakosh, P.J. Plauger, Michel Schinz, Eric Sosman, Chris Tapp, Andrey Tarasevich, Josh Triplett, Pavel Vasilyev, Ivan Vecerina, Zeljko Vrba, David Wagner, Henry S. Warren, Colin Watson, Zhenyu Wu, Drew Yao, and Christopher Yeleighton.
Editors
Jodi Blake, Pamela Curtis, Ed Desautels, Osona Steave, and Barbara White.
Developers and Administrators
Rudolph Maceyko, Jason McCormick, Joe McManus, and Brad Rubbo
Special Thanks
Jeff Carpenter, Yurie Ito, Joe Jarzombek, Rich Pethia, Jason Rafail, Frank Redner, and Bob Rosenstein.
CERT Secure Coding Standards CERT Secure Coding Standards CERT C Secure Coding Standard