![Phân tích tư tưởng của nhân dân qua đoạn thơ: Những người vợ nhớ chồng… Những cuộc đời đã hóa sông núi ta trong Đất nước của Nguyễn Khoa Điềm](https://timtailieu.net/upload/document/136415/phan-tich-tu-tuong-cua-nhan-dan-qua-doan-tho-039-039-nhung-nguoi-vo-nho-chong-nhung-cuoc-doi-da-hoa-song-nui-ta-039-039-trong-dat-nuoc-cua-nguyen-khoa-136415.jpg)
Supporting secure programming in web applications through interactive static analysis
Số trang: 14
Loại file: pdf
Dung lượng: 3.13 MB
Lượt xem: 24
Lượt tải: 0
Xem trước 2 trang đầu tiên của tài liệu này:
Thông tin tài liệu:
Many security incidents are caused by software developers’ failure to adhere to secure programming practices. Static analysis tools have been used to detect software vulnerabilities. However, their wide usage by developers is limited by the special training required to write rules customized to application-specific logic. Our approach is interactive static analysis, to integrate static analysis into Integrated Development Environment (IDE) and provide in-situ secure programming support to help developers prevent vulnerabilities during code construction. No additional training is required nor are there any assumptions on ways programs are built. Our work is motivated in part by the observation that many vulnerabilities are introduced due to failure to practice secure programming by knowledgeable developers. We implemented a prototype interactive static analysis tool as a plug-in for Java in Eclipse. Our technical evaluation of our prototype detected multiple zero-day vulnerabilities in a large open source project. Our evaluations also suggest that false positives may be limited to a very small class of use cases.
Nội dung trích xuất từ tài liệu:
Supporting secure programming in web applications through interactive static analysis
Nội dung trích xuất từ tài liệu:
Supporting secure programming in web applications through interactive static analysis
Tìm kiếm theo từ khóa liên quan:
Secure programming Static analysis Interactive static analysis Software vulnerabilities Supporting secure programmingTài liệu liên quan:
-
39 trang 16 0 0
-
506 trang 14 0 0
-
19 trang 12 0 0
-
Static analysis of Reissner-Mindlin plates using ES+NS-MITC3 elements
13 trang 12 0 0 -
9 trang 9 0 0