Wir verwenden Cookies und Analyse-Tools, um die Nutzerfreundlichkeit der Internet-Seite zu verbessern und für Marketingzwecke. Wenn Sie fortfahren, diese Seite zu verwenden, nehmen wir an, dass Sie damit einverstanden sind. Zur Datenschutzerklärung.
AI-based Static Application Security Testing Guide
Details
Code smells are usually ignored as they are neither a bug, nor a vulnerability. Quality engineers and, specially, security architects ignore them. As some of the code smells may lead towards vulnerability which may further be exploited by the hackers, therefore, such vulnerable code smells must be considered and further mitigated by threat modelers. In order to provide a repository of such code smells to security designers, a process had been devised and experimented. During the execution, various web applications had been passed through SAST and resulting code smells had been extracted and then inserted into a new dataset via Python. Later on, the code smells deposited in the dataset had been classified into various categories. Finally, machine learning algorithms had been assessed through WEKA and the fastest as well the most accurate algorithm had been selected. Current security standards do not ensure mitigation of threats caused by leading-to-vulnerability code smells, till to date. Typically, threat modelers assess security of a system through modeling threats via CIA, STRIDE and LINDDUN standards on its DFD and various architectural / infrastructural diagrams.
Autorentext
Senior Software Engineer with over 18 years of experience in delivering enterprise systems along with managing and building high-performance teams.
Weitere Informationen
- Allgemeine Informationen
- GTIN 09786207997046
- Anzahl Seiten 100
- Genre Programming Languages
- Herausgeber LAP LAMBERT Academic Publishing
- Gewicht 167g
- Untertitel Improved Threat Modeling for Detection, Classification & Prevention of Leading to Vulnerability Code Smells
- Größe H220mm x B150mm x T7mm
- Jahr 2024
- EAN 9786207997046
- Format Kartonierter Einband
- ISBN 6207997042
- Veröffentlichung 22.08.2024
- Titel AI-based Static Application Security Testing Guide
- Autor Malik Shah Jahan
- Sprache Englisch