FreeBSD security information: http://www.freebsd.org/security/security.html
PacketStorm Tutorials List: http://packetstormsecurity.nl/programming-tutorials/
Secure, Efficient, and Easy C Programming: http://www.irccrew.org/~cras/security/c-guide.html
Secure Programming For Linux and Unix Howto:http://www.dwheeler.com/secure-programs/
Systems Security Engineering:http://www.sse-cmm.org/
Secure Unix Programming FAQ: http://packetstormsecurity.org/programming-tutorials/secure-faq.html
Windows Security: http://www.windowsecurity.com/
Writing Safe Setuid Programs: http://nob.cs.ucdavis.edu/~bishop/
The World Wide Web Security FAQ: http://www.w3.org/Security/Faq/www-security-faq.html
The Open Web Application Security Project: http://www.owasp.org/
參考資料:
[1] Mark G. Graff and Kenneth R. van Wyk, Secure Coding Principles and Practices, O'Reilly Inc. 2003.