Security and coding style
20th December 2002
A couple of good web development security resources:
- The Peon’s Guide To Secure System Development—why most software is insecure, why this is a bad thing and some sugestions for strategies to improve the situation.
- The Cross Site Scripting FAQ—Cross site scripting (where malicious users insert HTML / javascript in to your site in some way that allows them to steal cookies or cause other problems) is an issue that all web developers should understand. It is easy to defend against once you understand the problem.
I also found myself reading the Linux Kernel Coding Style document for some reason, and learnt some useful lessons about writing effective C (should I ever need to delve in to that language).
More recent articles
- Highlights from my appearance on the Data Renegades podcast with CL Kao and Dori Wilson - 26th November 2025
- Claude Opus 4.5, and why evaluating new LLMs is increasingly difficult - 24th November 2025
- sqlite-utils 4.0a1 has several (minor) backwards incompatible changes - 24th November 2025