February 2019
Intermediate to advanced
256 pages
7h 34m
English
For this approach, we recommend an all-in-one shell script, the Code Review Audit Script Scanner (CRASS). This one script includes everything needed for secure code scanning, and it defines the secure code scanning patterns for Java, JSP, Flex Flash, .NET, PHP, HTML, Android, iOS, Python, Ruby, and C. It can easily be extended by editing the grep-it.sh file. We may use the same vulnerable Python project from before as our example for the following steps.
Read now
Unlock full access