Validation Test Codes Development of Static Analysis Tool for Secure Software 


Vol. 38,  No. 5, pp. 420-427, May  2013


PDF
  Abstract

Recently, for secure software development, static analysis tools have been used mostly to analyze the source code of the software and identify software weaknesses caused of vulnerabilities. In order to select the optimal static analysis tool, both weaknesses rules and analysis capabilities of the tool are important factors. Therefore, in this paper we propose the test codes developed for evaluating the rules and analysis capabilities of the tools. The test codes to involve 43 weaknesses such as SQL injection etc. can be used to evaluate the adequacy of the rules and analysis capabilities of the tools.

  Statistics
Cumulative Counts from November, 2022
Multiple requests among the same browser session are counted as one view. If you mouse over a chart, the values of data points will be shown.


  Cite this article

[IEEE Style]

J. Bang and R. Ha, "Validation Test Codes Development of Static Analysis Tool for Secure Software," The Journal of Korean Institute of Communications and Information Sciences, vol. 38, no. 5, pp. 420-427, 2013. DOI: .

[ACM Style]

Jiho Bang and Rhan Ha. 2013. Validation Test Codes Development of Static Analysis Tool for Secure Software. The Journal of Korean Institute of Communications and Information Sciences, 38, 5, (2013), 420-427. DOI: .

[KICS Style]

Jiho Bang and Rhan Ha, "Validation Test Codes Development of Static Analysis Tool for Secure Software," The Journal of Korean Institute of Communications and Information Sciences, vol. 38, no. 5, pp. 420-427, 5. 2013.