pay attention to this security forum and you will see them. there should be a sticky with huge amounts of references/checklists for security. there are also posts often regarding software vulnerabilities.
if those two points dont help, what exactly are you looking for
|