کد مقاله کد نشریه سال انتشار مقاله انگلیسی نسخه تمام متن
10367091 873084 2013 70 صفحه PDF دانلود رایگان
عنوان انگلیسی مقاله ISI
Static analysis of source code security: Assessment of tools against SAMATE tests
کلمات کلیدی
موضوعات مرتبط
مهندسی و علوم پایه مهندسی کامپیوتر تعامل انسان و کامپیوتر
پیش نمایش صفحه اول مقاله
Static analysis of source code security: Assessment of tools against SAMATE tests
چکیده انگلیسی
The results provide empirical evidences that support popular propositions not objectively demonstrated until now. The methodology is repeatable and allows ranking strictly the analyzed static analysis tools, in terms of vulnerabilities coverage and effectiveness for detecting the highest number of vulnerabilities having few false positives. Its use can help practitioners to select appropriate tools for a security review process of code. We propose some recommendations for improving the reliability and usefulness of static analysis tools and the process of benchmarking.
ناشر
Database: Elsevier - ScienceDirect (ساینس دایرکت)
Journal: Information and Software Technology - Volume 55, Issue 8, August 2013, Pages 1462-1476
نویسندگان
, ,