
Sergey Vasiliev
@_SergVasiliev_
Followers
395
Following
716
Media
143
Statuses
1K
.NET, качество и безопасность кода, статический анализ.
Joined April 2015
RT @STeplyakov: Just a friendly reminder that using `ConcurrentDictionary<K,V>.Count` to check for emptiness is not the right way, since th….
0
23
0
XXE в .NET 6 SDK. Давненько статей не писал — исправляюсь. На этот раз копаемся в коде и исслед��ем XXE из .NET SDK (CVE-2022-34716): #csharp #dotnet #security #xxe #безопасность.
habr.com
Современный .NET даёт разработчикам защиту от XXE из коробки: парсишь себе XML и не забиваешь голову всякими DTD, сущностями и связанной с ними безопасностью. Разве не прекрасно? Однако жизнь —...
0
0
1
RT @taritsyn: @ForeverLeafage @_SergVasiliev_ На YouTube-канале DotNetRu опубликована видеозапись доклада Сергея Васильева «Анализ C# кода….
0
1
0
RT @AGB_eng: Just wrote my first article as a DevRel. I chose @RyujinxEmu, an open source Nintendo Switch emulator. Checked it for code fl….
pvs-studio.com
Nintendo Switch′s popularity hasn′t waned, and with exclusive games winning awards, the desire to play them is only growing. However, not everyone has the opportunity to try out this portable...
0
1
0
I've recently examined some suspicious code fragments in the AWS SDK for .NET. It turned out that there are some issues to look at: infinite recursion, copy-paste errors, suspicious checks, and so on.🐞. #csharp #dotnet #aws #amazonwebservices #amazon.
pvs-studio.com
Today we are dissecting AWS SDK for .NET. We will look at suspicious code fragments, figure out what′s wrong with them, and try to reproduce some of the errors. Make yourself a cup of coffee and...
0
0
1
RT @hackinarticles: Pic of the Day . #infosec #cybersecurity #cybersecuritytips #pentesting #cybersecurityawareness #informationsecurity ht….
0
313
0
I've written one more article about vulnerabilities in C# apps. This time we'll analyze XSS in mojoPortal CMS (CVE-2023-24322).🐞. #csharp #dotnet #xss #security #cybersecurity #cms.
pvs-studio.com
In this article, we will thoroughly examine the XSS vulnerability in a CMS written in C#. Let′s recall the theory, figure out how the security defect looks from a user′s perspective and in code,...
0
1
0
RT @insomniacgames: The Great Hunt Begins. We're thrilled to reveal the first-ever gameplay of Marvel's Spider-Man 2, coming fall 2023 on P….
0
16K
0
RavenDB and PVS-Studio: win-win collaboration. This is a brief story of how @pvs_studio collaborated with @RavenDB. How can searching for errors in one project benefit both?. #csharp #dotnet #ravendb.
pvs-studio.com
This is a brief story of how PVS-Studio collaborated with RavenDB. PVS-Studio is a static code analyzer. RavenDB is an open-source database. How can searching for errors in one project benefit both...
0
3
5
Top 10 C# conference talks 2019–2022. Here's a small compilation of curious talks at C# and .NET conferences. Talks by @MadsTorgersen @markrendle @madSimonJ @TheCodeTraveler @furmanekadam @jaredpar @rla4 @dcampbell @SitnikAdam @ian_h_cooper. #csharp.
pvs-studio.com
Here′s a small compilation of curious talks at C# and .NET conferences over the past few years.
2
7
26