Buscar
Mostrando ítems 1-10 de 109
On Combining Static, Dynamic and Interactive Analysis Security Testing Tools to Improve OWASP Top Ten Security Vulnerability Detection in Web Applications
The design of the techniques and algorithms used by the static, dynamic and interactive security testing tools differ. Therefore, each tool detects to a greater or lesser extent each type of vulnerability for which they ...
Benchmarking Approach to Compare Web Applications Static Analysis Tools Detecting OWASP Top Ten Security Vulnerabilities
To detect security vulnerabilities in a web application, the security analyst must choose the best performance Security Analysis Static Tool (SAST) in terms of discovering the greatest number of security vulnerabilities ...
Hybrid Security Assessment Methodology for Web Applications
This study presents a methodology to evaluate and prevent security vulnerabilities issues for web applications. The analysis process is based on the use of techniques and tools that allow to perform security assessments ...
Combinatorial method with static analysis for source code security in web applications
Security weaknesses in web applications deployed in cloud architectures can seriously affect its data confidentiality and integrity. The construction of the procedure utilized in the static analysis tools of source code ...
Systematic mapping of the literature on Secure Software Development
(IEEEUS, 2021)
The accelerated growth in exploiting vulnerabilities due to errors or failures in the software development process is a latent concern in the Software Industry. In this sense, this study aims to provide an overview of the ...
Securing networked embedded systems through distributed systems analysis
(Universidade Federal de Minas GeraisUFMG, 2015-11-19)
New technologies such as the Internet of Things and Cloud Computing are increasing the importance of tools able to provide users with correct, reliable and secure systems. In this work, we claim that traditional static ...
Desenvolvimento de uma ferramenta para identificação e classificação de security smells em dockerfilesDevelopment of a tool for identifying and classifying security smells in dockerfiles
(Universidade Federal do Rio Grande do NorteBrasilUFRNBacharelado em Sistemas de InformaçãoDepartamento de Computação e Tecnologia, 2022)