...
Minimizing privileged code reduces the attack surface of an application and simplifies the task of auditing privileged code.
Automated Detection
| Tool | Version | Checker | Description | ||||||
|---|---|---|---|---|---|---|---|---|---|
| Parasoft Jtest |
| CERT.SEC51.PCL | Limit the number of lines in "privileged" code blocks |
Bibliography
...
...