SE547: BDDs: Software Security [3/22] |
What is a buffer overflow attack?
Can buffer overflow attacks occur in C? In Java?
What language feature of C or Java allows buffer overflows?
What can we do about it? Statically? Dynamically?
What are the tradeoffs between static and dynamic checks?
Check out this cool applet: http://nsfsecurity.pr.erau.edu/bom/