【24h】

An Anti-pattern for Misuse Cases

机译:滥用病例的反模式

获取原文

摘要

Misuse case analysis is a method for the elicitation, documentation, and communication of security requirements. It builds upon the well-established use case analysis method and is one of the few existing techniques dedicated to security requirements engineering. We present an anti-pattern for applying misuse cases, dubbed "orphan misuses." Orphan misuse cases by and large ignore the system at hand, thus providing little insight into its security. Common symptoms include implementation-dependent threats and overly general, vacuous mitigations. We illustrate orphan misuse cases through examples, explain their negative consequences in detail, and give guidelines for avoiding them.
机译:误用案例分析是一种诱导,文档和安全要求的通信的方法。它建立在建立良好的用途案例分析方法上,是少数专用于安全要求工程的现有技术之一。我们提出了一种滥用滥用案件的反模式,称为“孤儿滥用”。孤儿滥用案件和大量忽略了手头的系统,从而熟悉其安全性。常见的症状包括依赖依赖的威胁,过于一般,空虚。我们通过示例说明了孤儿滥用案例,详细解释了它们的负面后果,并给出了避免它们的指导方针。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号