Typos that omit security features and how to test for them
blog.trailofbits.com | blog | #secure-coding | #c | #cpp | #compiler | #mitigations | #fortify-source | #build-security | #auditing | #typos | #build-hardening
Summary
An audit found a typo that silently disabled _FORTIFY_SOURCE; the team found and fixed twenty similar C/C++ bugs on GitHub and shows how to test builds for this missed mitigation.
- Published
- Collected
Skip to content