David Svoboda
Software Engineering Institute
David Svoboda is a software security engineer at the CERT Division of the Software Engineering Institute. He co-authored or contributed to four books, including The SEI CERT C Coding Standard and The CERT Oracle Secure Coding Standard for Java. He also maintains the SEI CERT Coding Standards wiki and has taught Secure Coding in C, C++, and Java all over the world to various groups in the military, government, and banking industries.
Svoboda is also involved in the ISO C standard group (ISO/IEC/JTC1/SC22/WG14) and the Safety Critical Rust Consortium.
Automated Code Repair for C/C++ Static Analysis
• Technical Report
By David Svoboda , Lori Flynn , William Klieber , Michael Duggan , Nicholas Reimer , Joe Sible
Design of Enhanced Pointer Ownership Model for C
• Technical Report
By David Svoboda , Lori Flynn , William Klieber , Ruben Martins , Sasank Vishnubhatla , Nicholas Reimer
Updating Risk Assessment in the CERT Secure Coding Standard
• Podcast
By David Svoboda , Joe Sible , Robert Schiela
Detection and Repair: The Cost of Remediation
• Blog Post
Automated Code Repair for C/C++ Static Analysis
• Technical Report
By David Svoboda , Lori Flynn , William Klieber , Michael Duggan , Nicholas Reimer , Joe Sible
Design of Enhanced Pointer Ownership Model for C
• Technical Report
By David Svoboda , Lori Flynn , William Klieber , Ruben Martins , Sasank Vishnubhatla , Nicholas Reimer
Integration of Automated Static Analysis Alert Classification and Prioritization with Auditing Tools: Special Focus on SCALe
• Technical Report
By Lori Flynn , Ebonie McNeil , David Svoboda , Derek Leung , Zachary Kurtz , Jiyeon Lee (Carnegie Mellon University)
SCALe Analysis of JasPer Codebase
• White Paper
Detection and Repair: The Cost of Remediation
• Blog Post
What Recent Vulnerabilities Mean to Rust
• Blog Post
Updating Risk Assessment in the CERT Secure Coding Standard
• Podcast
By David Svoboda , Joe Sible , Robert Schiela
Software Security in Rust
• Podcast
By Joe Sible , David Svoboda
Redemption Tool Demo: View Difference Between Original Code and Repaired Code (Manual Review)
• Video
Redemption Demo: Use Microsoft Visual Studio Code to View Redemption Repairs: Ignore, Accept, Revert
• Video
By David Svoboda , Lori Flynn
Will Rust Solve Software Security?
• Webcast
By David Svoboda , Joe Sible