World Congress 2024

Programming secure C#/.NET Applications: Dos & Don'ts

July 18, 2024 16:10 – 16:40 · 30 min STAGE 2 (500)

What this session covers

C# and .NET have become an almost indispensable technology stack for many companies. Applications not only run on the desktop anymore, but also on our smartphones, large cloud applications and even medical devices.

In this talk, we will discuss treacherous security traps and common mistakes around .NET development, including the use of cryptography, parser or character encoding, using illustrative code examples.

We will first look at the effects of these errors and then explain how they can be avoided or repaired. For some examples, we will also take a brief glance at other languages such as Java to raise awareness on different language and framework design issues. This talk is suitable for developers without deep knowledge of secure software development; however, it is not exclusively aimed for pure C# developers. Prior knowledge of cryptography, the .NET runtimes, or various 3rd party APIs is helpful, but not required.

Related talks at this congress

Open session

World Congress 2024

July 19, 2024 · 09:00–09:30

STAGE 6 (120)

Better safe than sorry: Threat Modeling for Web Developers

Clemens Hübner

Software Security Engineer

Clemens Hübner
Open session

World Congress 2024

July 19, 2024 · 10:20–10:50

STAGE 6 (120)

How Can My Software Development Be 'Secure by Design'?

Christoph Niehoff

TNG Technology Consulting

Christoph Niehoff
Open session

World Congress 2024

July 18, 2024 · 16:50–17:20

STAGE 2 (500)

How your .NET software supply chain is open to attack : and how to fix it

Andrei Epure

Software Engineering Manager at Sonar

Andrei Epure
Open session

World Congress 2024

July 19, 2024 · 13:40–14:10

Virtual Stage 1

Designing Secure Applications in the Cloud

Adora Nwodo

Senior Platform Engineer & Published Author

Adora Nwodo
All sessions at this congress