Here are a few free resources I'm thankful for this Thanksgiving:

  1. The OWASP: tools for self-education and libraries for developer defense
  2. Common Weakness Enumeration: detailed list of software weakness classes and information on how to detect, avoid, and repair them
  3. Metasploit: test your machines for known vulnerabilities.
  4. OpenPERT: Excel add-in for risk modeling (among other things)
  5. Microsoft SDL: information and tools for secure development