Publication | Closed Access
Learning from Software Security Testing
11
Citations
20
References
2008
Year
Unknown Venue
Software MaintenanceEngineeringInformation SecurityIntra-organisational Reposi- TorySoftware EngineeringSoftware AnalysisHardware SecurityVulnerability Assessment (Computing)Discovered VulnerabilitiesSystem TestingTesting TechniqueSoftware Security TestingSecurity TestingComputer ScienceSecurity Testing MethodSoftware SecurityProgram AnalysisSoftware TestingSecurity
Software security testing tools and methodologies are presently abundant, and the question no longer seems to be "if to test" for security, but rather "where and when to test" and "then what?". In this paper we present a review of security testing literature, and propose a software security testing scheme that exploits an intra-organisational reposi- tory of discovered vulnerabilities that closes the loop after the testing of one application is complete, providing useful input to the next application to be tested.
| Year | Citations | |
|---|---|---|
Page 1
Page 1