Wednesday, May 12, 2010
You may not need an SDL
Posted by Robert Graham at 2:43 PM
This post at Securosis describes why Microsoft's SDL only works for Microsoft. Microsoft agrees in their own post. Both Securosis and Microsoft make fundamental errors about secure development.