首页> 外文会议>Logic programming >Detection of Security Vulnerabilities Using Guided Model Checking
【24h】

Detection of Security Vulnerabilities Using Guided Model Checking

机译:使用指导模型检查来检测安全漏洞

获取原文
获取原文并翻译 | 示例

摘要

Software security problems are good candidates for application of verification techniques. Usually it is not a complex task to represent certain security-related property in a particular verification framework. For instance in any software model checking environment (MC)[1] it is possible to state buffer overflow detection as a reachability problem. The approach works in theory and in practice, but has a major scalability drawback: the state-space, which represents all possible behaviors of the system, might grow exponentially in the size of the product of a model and a property. From the other side MC has an important advantage - a counter-example is produced automatically when the bug is found.
机译:软件安全性问题是应用验证技术的良好候选者。通常,在特定的验证框架中表示某些与安全相关的属性并不是一项复杂的任务。例如,在任何软件模型检查环境(MC)[1]中,都可以将缓冲区溢出检测声明为可达性问题。该方法在理论上和实践上都有效,但是具有主要的可伸缩性缺点:表示系统所有可能行为的状态空间在模型和属性乘积的大小上可能呈指数增长。另一方面,MC具有一个重要的优势-发现错误后会自动生成一个反例。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号