February 2019
Intermediate to advanced
256 pages
7h 34m
English
This approach is very easy to deploy without the need to install other dependencies, and it doesn't require a whole buildable source code package to do the code scanning. For some cases, to identify security code issues, it requires not only to identify the risky API but also to review the context of the usage, which will be explained more in the next section.
For Windows users, the secure code scanning tool Visual Code Grepper (VCG) is recommended. It provides not only GUI but also CLI mode. It supports multiple programming languages, including C/C++, Java, PHP, VB, and C#. The default installation comes with details on the predefined banned and risky functions of each programming language ...
Read now
Unlock full access