HITBSecConf2006 Presentation - What application security tools vendors dont want you to know and holes they will never find!
b7e05d8e73c4a12752742c07857147e7ITS4 is a command-line tool for statically scanning C and C++ source code for security vulnerabilities. ITS4 scans through source code for potentially dangerous function calls that are stored in a database. Anything that is in the database gets flagged. ITS4 tries to automate a lot of the grepping usually done by hand when performing security audits.
659c18b10012a4ae6f71073bc578e088ITS4 is a command-line tool for statically scanning C and C++ source code for security vulnerabilities. ITS4 scans through source code for potentially dangerous function calls that are stored in a database. Anything that is in the database gets flagged. ITS4 tries to automate a lot of the grepping usually done by hand when performing security audits.
bcf4c815b8d6d114e98b78e8db03141d