Ask a Question

Prefer a chat interface with context about you and your work?

“Do this! Do that!, and Nothing will Happen” Do Specifications Lead to Securely Stored Passwords?

“Do this! Do that!, and Nothing will Happen” Do Specifications Lead to Securely Stored Passwords?

Does the act of writing a specification (how the code should behave) for a piece of security sensitive code lead to developers producing more secure code? We asked 138 developers to write a snippet of code to store a password: Half of them were asked to write down a specification …