Insecure Code: An Agile Look at the Debian Debacle

by Laurent Bossavit

How compatible are agile software development processes, such as XP, with the production of secure code? I am often asked this question and sometimes, indeed, confronted with the suggestion that they are not. Yet, my experience shows that not only is agile development compatible with secure code, it is an enabler. This Executive Update examines a recent unusual incident in the world of open source software, providing some insights in support of this position.

Password Protected Cutter Consortium clients, please log in:


This document is available to Cutter Consortium Resource Center clients only. Retrieve password.
If you would like further information about how to become a client, please contact us at +1 781 648 8700 or sales@cutter.com.
Insecure Code: An Agile Look at the Debian Debacle1 August 2008