The following is a list of resources pertaining to the topics covered in this chapter. 1.7.1. General Security Resources Building Secure Software, John Viega and Gary McGraw (Addison-Wesley), 2001 Full Disclosure: http://lists.netsys.com/mailman/listinfo/full-disclosure/ Security Focus (BugTraq et al.): http://www.securityfocus.com/ "Smashing the Stack for Fun and Profit," Elias Levy, Phrack 49: article 14(http://www.phrack.org) 1.7.2. General Security-Related Request for Comments (RFCs) RFC 2196: Site Security Handbook RFC 2504: Users' Security Handbook RFC 2828: Internet Security Glossary RFC 3013: Recommended Internet Service Provider Security Services and Procedures RFC 3365: Strong Security Requirements for Internet Engineering Task Force Standard Protocols RFC 3631: Security Mechanisms for the Internet |