Static code analysis is an essential to secure code development. AltSci Concepts is developing a method to detect vulnerabilities and bugs in code. Although this method is best implemented in a full code parser, it can be employed manually which I wish to discuss with programmers and security researchers. The graphics and code I will display will expose security vulnerabilities and bugs in a few pieces of common software. I plan to release bugs I find full disclosure with proper time given to the developers to fix the issues. Learning this method will help normal developers improve their code quality and it will help even advanced programmers prove that their code is designed correctly.
Joel R. Voss
JoelR. Voss is the founder of AltSci Concepts, Neg9 Seattle hacker, and a professional programmer. He has a Bachelor of Science in Physics from the University of Washington and enjoys thinking about science and technology. He is a returning speaker having talked at Toorcon Seattle 1.0 and Toorcon 8 San Diego. http://seattle.toorcon.org/2008/conference.php?id=12