A Comparative Study of Vulnerability Discovery Modeling and Software Reliability Growth Modeling

被引:0
|
作者
Kapur, P. K. [1 ]
Yadavali, V. S. S. [2 ]
Shrivastava, A. K. [3 ]
机构
[1] Amity Univ, Ctr Interdisciplinary Res, Noida, UP, India
[2] Univ Pretoria, Dept Ind & Syst Engn, Pretoria, South Africa
[3] Univ Delhi, Dept Operat Res, Delhi, India
关键词
Vulnerability Discovery Model (VDM); Vulnerability; Software Security; Software Reliability Growth Model (SRGM); Non Homogeneous Poisson Process (NHPP);
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Technological advancements are achieving greater heights with each passing day. Information technology is one of the area in which is developing at an agile pace. It has evolved in such a way that we all are interconnected through some medium viz. Internet, telecommunication etc. Technical advancements have grown enough to affect everyone's day to day life. With this increasing dependency on software systems the issue of being secure is a big challenge. This security problem is becoming critical due to the presence of bad guys and attracted a lot of researchers towards identifying major attributes of security. One of the security attribute considered in this paper is software vulnerability. Software security vulnerability is a weakness in a software product that could allow an attacker to compromise the integrity, availability, or confidentiality of that product. In past, Vulnerabilities have been reported in the various operating systems. In order to mitigate the risk associated with these vulnerabilities both the developers as well as the users have to utilize their significant resources. Recently few researchers have shown their interest in investigating the potential number of vulnerabilities in the software by applying quantitative approach. In this paper we analytically describe existing models and compare it with our proposed models by evaluating these models using actual data for various software systems. Our proposed models capture the discovery process relatively better than the existing discovery models. Further it has also been shown that some of the existing SRGM can also be used for predicting security vulnerabilities in software.
引用
收藏
页码:246 / 251
页数:6
相关论文
共 50 条
  • [1] Elementary Software Reliability Growth Modeling
    Yamada, Shigeru
    2017 6TH INTERNATIONAL CONFERENCE ON RELIABILITY, INFOCOM TECHNOLOGIES AND OPTIMIZATION (TRENDS AND FUTURE DIRECTIONS) (ICRITO), 2017, : 2 - 10
  • [2] SOFTWARE RELIABILITY GROWTH MODELING FOR AGILE SOFTWARE DEVELOPMENT
    Rawat, Shubham
    Goyal, Nupur
    Ram, Mangey
    INTERNATIONAL JOURNAL OF APPLIED MATHEMATICS AND COMPUTER SCIENCE, 2017, 27 (04) : 777 - 783
  • [3] Modeling Software Vulnerability Discovery Process Inculcating the Impact of Reporters
    Adarsh Anand
    Navneet Bhatt
    Omar H. Alhazmi
    Information Systems Frontiers, 2021, 23 : 709 - 722
  • [4] Software security evaluation using multilevel vulnerability discovery modeling
    Sharma, Ruchi
    Shrivastava, Avinash K.
    Hoang Pham
    QUALITY ENGINEERING, 2023, 35 (02) : 341 - 352
  • [5] Modeling Software Vulnerability Discovery Process Inculcating the Impact of Reporters
    Anand, Adarsh
    Bhatt, Navneet
    Alhazmi, Omar H.
    INFORMATION SYSTEMS FRONTIERS, 2021, 23 (03) : 709 - 722
  • [6] ESTIMATION OF COMPLEXITY IN SOFTWARE RELIABILITY GROWTH MODELING
    Thakur, Priyanka
    Sharma, Shiv K.
    ADVANCES AND APPLICATIONS IN MATHEMATICAL SCIENCES, 2020, 19 (06): : 563 - 572
  • [7] Flexible discrete software reliability growth modeling
    Inoue, Shinji
    Yamada, Shigeru
    ICIM 2006: PROCEEDINGS OF THE EIGHTH INTERNATIONAL CONFERENCE ON INDUSTRIAL MANAGEMENT, 2006, : 861 - 866
  • [8] Modeling software reliability growth with genetic programming
    Costa, Eduardo Oliveira
    Vergilio, Silvia R.
    Pozo, Aurora
    Souza, Gustavo
    16th IEEE International Symposium on Software Reliability Engineering, Proceedings, 2005, : 171 - 180
  • [9] A case study on stacked generalization with software reliability growth modeling data
    Guo, P
    Lyu, MR
    8TH INTERNATIONAL CONFERENCE ON NEURAL INFORMATION PROCESSING, VOLS 1-3, PROCEEDING, 2001, : 1321 - 1326
  • [10] Modeling the vulnerability discovery process
    Alhazmi, O. H.
    Malaiya, Y. K.
    16TH IEEE INTERNATIONAL SYMPOSIUM ON SOFTWARE RELIABILITY ENGINEERING, PROCEEDINGS, 2005, : 129 - 138