Integrated software vulnerability and security functionality assessment

被引:2
|
作者
Wang, Xiangrong [1 ]
Shi, Hang [1 ]
Huang, Tze-Yau William [1 ]
Lin, Frank C. [1 ]
机构
[1] Cisco Syst Inc, Automated Test Ctr, 170 W TAsman Dr, San Jose, CA 95134 USA
关键词
D O I
10.1109/ISSRE.2007.20
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Product security is an on-going challenge for network equipment vendors. In this paper, we present a systematic methodology for some software vulnerability assessment and security function verification. Based on this approach, a scalable and adaptable automatic test system was implemented to test over a hundred production software releases over the past year. This paper describes the methodology, the framework, and the results.
引用
收藏
页码:103 / +
页数:2
相关论文
共 50 条
  • [41] Improving software security through an integrated approach
    Gan, Zaobin
    Wei, Dengwei
    Varadharajan, Vijay
    SECRYPT 2006: PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON SECURITY AND CRYPTOGRAPHY, 2006, : 437 - +
  • [42] An integrated approach to security in software development methodologies
    Raman, Abhay
    Muegge, Steven
    2008 CANADIAN CONFERENCE ON ELECTRICAL AND COMPUTER ENGINEERING, VOLS 1-4, 2008, : 1921 - 1924
  • [43] Benchmark Requirements for Assessing Software Security Vulnerability Testing Tools
    Parizi, Reza M.
    Qian, Kai
    Shahriar, Hossain
    Wu, Fan
    Tao, Lixin
    2018 IEEE 42ND ANNUAL COMPUTER SOFTWARE AND APPLICATIONS CONFERENCE (COMPSAC), VOL 1, 2018, : 825 - 826
  • [44] Software security evaluation using multilevel vulnerability discovery modeling
    Sharma, Ruchi
    Shrivastava, Avinash K.
    Hoang Pham
    QUALITY ENGINEERING, 2023, 35 (02) : 341 - 352
  • [45] Vulnerability assessment through integrated transportation analysis
    Hood, JN
    Olivas, T
    Slocter, CB
    Howard, B
    Albright, DP
    TRANSPORTATION SECURITY AND INFRASTRUCTURE PROTECTION: SAFETY AND HUMAN PERFORMANCE, 2003, (1822): : 18 - 23
  • [46] Implementation of an integrated vulnerability and risk assessment model
    Natainia S. Lummen
    Fumihiko Yamada
    Natural Hazards, 2014, 73 : 1085 - 1117
  • [47] Coastal infrastructure vulnerability: an integrated assessment model
    Kantamaneni, Komali
    NATURAL HAZARDS, 2016, 84 (01) : 139 - 154
  • [48] Vulnerability assessment through integrated transportation analysis
    Hood, Jacqueline N.
    Olivas, Tim
    Slocter, Chuck B.
    Howard, Barry
    Albright, David P.
    Transportation Research Record, 2003, (1822) : 18 - 23
  • [49] Implementation of an integrated vulnerability and risk assessment model
    Lummen, Natainia S.
    Yamada, Fumihiko
    NATURAL HAZARDS, 2014, 73 (02) : 1085 - 1117
  • [50] An Integrated Vulnerability Assessment Tool for Web Applications
    Kirubakaran, Stewart S.
    Kathrine, G. Jaspher W.
    Xavier, Arul V. M.
    Palmer, G. Mathew
    2022 5TH INTERNATIONAL CONFERENCE ON MULTIMEDIA, SIGNAL PROCESSING AND COMMUNICATION TECHNOLOGIES (IMPACT), 2022,