conference-paper Open access

Statistics of software vulnerability detection in certification testing

  • Journal of Physics Conference Series
  • IOP Publishing
Research footprint

At a glance

Citations
9
References
16
Comments
0
Paper overview

Öz

The paper discusses practical aspects of introduction of the methods to detect software vulnerability in the day-to-day activities of the accredited testing laboratory. It presents the approval results of the vulnerability detection methods as part of the study of the open source software and the software that is a test object of the certification tests under information security requirements, including software for communication networks. Results of the study showing the allocation of identified vulnerabilities by types of attacks, country of origin, programming languages used in the development, methods for detecting vulnerability, etc. are given. The experience of foreign information security certification systems related to the detection of certified software vulnerabilities is analyzed. The main conclusion based on the study is the need to implement practices for developing secure software in the development life cycle processes. The conclusions and recommendations for the testing laboratories on the implementation of the vulnerability analysis methods are laid down.

Record transparency

Publication details

DOI
10.1088/1742-6596/1015/4/042033
OpenAlex
W2803690692
Document type
conference-paper
Language
EN
Source
Journal of Physics Conference Series
Last metadata update
Community

Comments

Oturum Açın to join the discussion.

  1. No comments yet. Start the discussion.