@INPROCEEDINGS{eigler:mudflap,
	AUTHOR = "Frank Ch. Eigler",
	TITLE = "Mudflap: {P}ointer {U}se {C}hecking for {C}/{C}++",
	BOOKTITLE = "GCC Developers Summit 2003",
	ORGANIZATION = "GCC Developers",
	MONTH = "May",
	YEAR = {2003},
	HOWPUBLISHED = {\url{http://gcc.fyxm.net/summit/2003/mudflap.pdf}}
}

@INPROCEEDINGS{sprundel:fuzzer,
	AUTHOR = "Ilja van Sprundel",
	TITLE = "Fuzzing: Breaking software in an automated fashion",
	BOOKTITLE = "22nd Chaos Communication Congress",
	ORGANIZATION = "Chaos Computer Club",
	MONTH = "December",
	YEAR = {2005},
	HOWPUBLISHED = "\url{http://events.ccc.de/congress/2005/fahrplan/attachments/582-paper_fuzzing.pdf}"
}

@INPROCEEDINGS{smalley:selinux,
	AUTHOR = "Peter A. Loscocco and Stephen D. Smalley",
	TITLE = "Meeting {C}ritical {S}ecurity {O}bjectives with {S}ecurity-{E}nhanced {L}inux",
	BOOKTITLE = "Proceedings of the 2001 Ottawa Linux Symposium",
	MONTH = "July",
	YEAR = {2001},
	HOWPUBLISHED = "\url{http://www.nsa.gov/research/_files/selinux/papers/ottawa01.pdf}"
}

@INPROCEEDINGS{kiezun:xss,
	AUTHOR = {Adam Kie{\.z}un and Philip J. Guo and Karthick Jayaraman and Michael D. Ernst},
	TITLE = {Automatic creation of {SQL} injection and cross-site scripting attacks},
	BOOKTITLE = {ICSE'09, Proceedings of the 30th International Conference on Software Engineering},
	ADDRESS = {Vancouver, BC, Canada},
	MONTH = {May~20--22,},
	YEAR = {2009}
}

@INBOOK{mcclure:hackexposed,
	AUTHOR = "Stuart McClure",
	TITLE = "Hacking Exposed",
	PUBLISHER = "McGraw-Hill Professional",
	MONTH = "March",
	YEAR = {2009},
	CHAPTER = {Hacking Unix},
	EDITION = {6th}
}

@misc{debian:secureapt,
	AUTHOR = "Debian",
	TITLE = "All about secure apt",
	HOWPUBLISHED = "\url{http://wiki.debian.org/SecureApt}",
	NOTE = "[Online, accessed 16-December-2009]"
}

@misc{securityfocus:capab,
	AUTHOR = "Jeremy Rauch",
	TITLE = "Introduction to {L}inux {C}apabilities and {ACL}s",
	HOWPUBLISHED = "\url{http://www.securityfocus.com/infocus/1400}",
	NOTE = "[Online, accessed 16-December-2009]"
}

@misc{wp:unix,
	AUTHOR = "Wikipedia",
	TITLE = "Unix --- {W}ikipedia{,} The Free Encyclopedia",
	HOWPUBLISHED = "\url{http://en.wikipedia.org/w/index.php?title=Unix&oldid=331924360}"
}

@misc{wp:linux,
	AUTHOR = "Wikipedia",
	TITLE = "Linux --- {W}ikipedia{,} The Free Encyclopedia",
	HOWPUBLISHED = "\url{http://en.wikipedia.org/w/index.php?title=Linux&oldid=332101608}"
}

@misc{wp:stackbuffer,
	AUTHOR = "Wikipedia",
	TITLE = "Stack buffer overflow --- {W}ikipedia{,} The Free Encyclopedia",
	HOWPUBLISHED = "\url{http://en.wikipedia.org/w/index.php?title=Stack_buffer_overflow&oldid=331178668}"
}

@misc{rjk:cgotchas,
	AUTHOR = "Richard Kettlewell",
	TITLE = "C {L}anguage {G}otchas",
	HOWPUBLISHED = "\url{http://www.greenend.org.uk/rjk/2001/02/cfu.html}",
	NOTE = "[Online, accessed 16-December-2009]"
}

@misc{wp:neumann,
	AUTHOR = "Wikipedia",
	TITLE = "Von {N}eumann architecture --- {W}ikipedia{,} The Free Encyclopedia",
	HOWPUBLISHED = "\url{http://en.wikipedia.org/w/index.php?title=Von_Neumann_architecture&oldid=330479010}"
}

@misc{wp:propolice,
	AUTHOR = "Wikipedia",
	TITLE = "Buffer overflow protection --- {W}ikipedia{,} The Free Encyclopedia",
	HOWPUBLISHED = "\url{http://en.wikipedia.org/w/index.php?title=Buffer_overflow_protection&oldid=333698084}"
}

@misc{phk:malloc,
	AUTHOR = "Poul-Henning Kemp",
	TITLE = "Malloc(3) revisited",
	HOWPUBLISHED = "\url{http://phk.freebsd.dk/pubs/malloc.pdf}",
	NOTE = "[Online, accessed 16-December-2009]"
}

@misc{phk:jails,
	AUTHOR = "Poul-Henning Kemp and Robert N. M. Watson",
	TITLE = "Jails: Confining the omnipotent root",
	HOWPUBLISHED = "\url{http://phk.freebsd.dk/pubs/sane2000-jail.pdf}",
	NOTE = "[Online, accessed 17-December-2009]"
}

@misc{dejesus:updates,
	AUTHOR = "Edmund X. DeJesus",
	TITLE = "Linux patch problems: Your distro may vary",
	HOWPUBLISHED = "\url{http://searchsecurity.techtarget.com/news/article/0,289142,sid14_gci1202417,00.html}",
	NOTE = "[Online, accessed 16-December-2009]"
}

@misc{debian:secfaq,
	AUTHOR = "Debian",
	TITLE = "Debian security {FAQ}",
	HOWPUBLISHED = "\url{http://www.debian.org/security/faq#oldversion}",
	NOTE = "[Online, accessed 16-December-2009]"
}

@misc{postfix:security,
	AUTHOR = "Postfix",
	TITLE = "Postfix {O}verview --- {S}ecurity",
	HOWPUBLISHED = "\url{http://www.postfix.org/security.html}",
	NOTE = "[Online, accessed 16-December-2009]"
}

@misc{krahmer:nx,
	AUTHOR = "Sebastian Krahmer",
	TITLE = "x86-64 buffer overflow exploits and the borrowed code chunks exploitation technique",
	HOWPUBLISHED = "\url{http://www.suse.de/~krahmer/no-nx.pdf}",
	MONTH = "September",
	YEAR = {2005},
	NOTE = "[Online, accessed 17-December-2009]"
}

@misc{chuvakin:chroot,
	AUTHOR = "Anton Chuvakin",
	TITLE = "Using {C}hroot {S}ecurely",
	HOWPUBLISHED = "\url{http://www.linuxsecurity.com/content/view/117632/49/}",
	NOTE = "[Online, accessed 17-December-2009]"
}

@misc{hoogeveen:zones,
	AUTHOR = "Joost Pronk van Hoogeveen",
	TITLE = "Working with {S}olaris {C}ontainers and the {S}olaris {S}ervice {M}anager",
	HOWPUBLISHED = "\url{http://www.sun.com/blueprints/0506/819-4328.pdf}",
	NOTE = "[Online, accessed 17-December-2009]"
}

@misc{sun:zone,
	AUTHOR = "{S}un {M}icrosystems",
	TITLE = "{S}ystem {A}dministration {G}uide: {S}olaris {C}ontainers - {R}esource {M}anagement and {S}olaris {Z}ones",
	HOWPUBLISHED = "\url{http://dlc.sun.com/pdf/817-1592/817-1592.pdf}",
	NOTE = "[Online, accessed 8-February-2010]"
}

@misc{man:capab,
	AUTHOR = "{L}inux {M}an {P}age {P}roject",
	TITLE = "capabilities - overview of Linux capabilities",
	HOWPUBLISHED = "\url{http://linux.die.net/man/7/capabilities}",
	NOTE = "[Online, accessed 29-January-2010]",
}

@inproceedings{seward:valgrind,
	AUTHOR = {Nethercote, Nicholas and Seward, Julian},
	TITLE = {Valgrind: a framework for heavyweight dynamic binary instrumentation},
	BOOKTITLE = {PLDI '07: Proceedings of the 2007 ACM SIGPLAN conference on Programming language design and implementation},
	YEAR = {2007},
	ISBN = {978-1-59593-633-2},
	PAGES = {89--100},
	LOCATION = {San Diego, California, USA},
	DOI = {http://doi.acm.org/10.1145/1250734.1250746},
	PUBLISHER = {ACM},
	ADDRESS = {New York, NY, USA},
}

