News (45)

Database flaws more risky than thought

Details of multiple security flaws in Oracle and IBM databases have been released by the security company that found them. Read more »

Oracle defends security record

Oracle has shrugged off criticisms of its recent security record, saying that one of the company's biggest security concerns is that its customers are so used to being secure that they are not used to applying patches. Read more »

Oracle no longer a 'bastion of security': Gartner

Analyst group Gartner has warned administrators to be "more aggressive" when protecting their Oracle applications because they are not getting enough help from the database giant. Read more »

Oracle to be more selective in patch development

Oracle plans to stop automatically producing security patches for all systems its software runs on, instead creating fixes for uncommon combinations on request, the company said on Tuesday. Read more »

MySQL issues security fix

MySQL has issued a security update to address flaws in its client-server protocol that could allow a malicious attacker to exploit buffer overflow vulnerabilities and gain access to sensitive information. Read more »

Oracle's oops on security flaw

Oracle accidentally let slip details last week on a security flaw it has yet to patch. Read more »

Multiple flaws reported in Linux kernel

Multiple vulnerabilities have been reported in many iterations and distributions of Linux. Read more »

Oracle fixes bugs with mega patch

Oracle on Tuesday released fixes for a laundry list of security vulnerabilities in many of its software products. Read more »

Flaw finders go their own way

Despite efforts from Microsoft and other companies to direct how and when security alerts are sent out, independent researchers are sticking to their own vision of flaw disclosure. Read more »

Microsoft probes report of IE flaw

A new flaw in Internet Explorer could be exploited to launch spoof-based attacks, or access and change data on vulnerable PCs, security experts have warned. Read more »

Features (9)

Ten commandments for the security-conscious programmer

Here are the steps from Builder AU that you should take to keep hackers and other security threats at bay. Read more »

Analyse MySQL databases with SQLyog

MySQL Server enthusiasts can now take advantage of an interface similar to SQL Server's Query Analyser. SQLyog provides the functionality for free. Read more »

Develop secure software at the application level

Protect your application from input overflow and underflow attacks, and from other common tactics with these development techniques. Read more »

Bug hunters, software firms in uneasy alliance

Although many software makers promote responsible disclosure, it isn't universally backed by the security community. Critics say it could make security companies lazy in patching. Full disclosure of flaws is better is preferred. Read more »

Develop a VoiceXML solution using BeVocal

VoiceXML (VXML) is a markup language like HTML. The difference is that a phone browser rather than a Web browser renders VXML. Get started with this article. Read more »

Gosling looks down Sun's open road

James Gosling discusses Sun's decision to release Java under the General Public License, whether open source is more secure than proprietary software, how IT departments can cut development costs, and why Microsoft still owns the desktop. Read more »

Ruby on Rails: The importance of being 1.0

We speak to David Heinemeier Hansson about the merits of open source, why Ruby on Rails should really be at 2.0 by now and how logic should keep out of the database. Read more »

James Gosling Q & A

James Gosling was in Australia this week to give two question-and-answer session to local developers. A rare opportunity for local developers, Builder AU was on hand to transcribe the event for those who couldn't make it. Read more »

Avoid bad form data with a little CGI validation code

Validating data from a Web form with a CGI script is a standard practice. Find out how to tweak your form validation code using regular expressions. Read more »

Log in


Sign up | Forgot your password?

What's on?