Susceptibility matrix: a new aid to software auditing
Title | Susceptibility matrix: a new aid to software auditing |
Publication Type | Journal Articles |
Year of Publication | 2004 |
Authors | Jiwnani K, Zelkowitz MV |
Journal | Security Privacy, IEEE |
Volume | 2 |
Issue | 2 |
Pagination | 16 - 21 |
Date Published | 2004/04//mar |
ISBN Number | 1540-7993 |
Keywords | approach;, auditing;, data;, matrix;, of, program, Security, software, susceptibility, taxonomy-based, testing;, vulnerabilities; |
Abstract | Testing for security is lengthy, complex, and costly, so focusing test efforts in areas that have the greatest number of security vulnerabilities is essential. This article describes a taxonomy-based approach that gives an insight into the distribution of vulnerabilities in a system. |
DOI | 10.1109/MSECP.2004.1281240 |