【24h】

Web application security vulnerabilities detection approaches: A systematic mapping study

机译:Web应用程序安全漏洞检测方法:系统映射研究

获取原文

摘要

Number of security vulnerabilities in web application has grown with the tremendous growth of web application in last two decades. As the domain of Web Applications is maturing, large number of empirical studies has been reported in web applications to address the solution of vulnerable web application. However, before advancing towards finding new approaches of web applications security vulnerability detection, there is a need to analyze and synthesize existing evidence based studies in web applications area. To do this, we have planned to conduct a systematic mapping study to view and report the state-of-the-art of empirical work in existing research of web applications. In this paper, we aimed at providing a description of mapping study for synthesizing the reported empirical research in the area of web applications security vulnerabilities detection approaches. The proposed solutions are mapped against: (1) the software development stages for which the solution has been proposed and (2) the web application vulnerabilities mapping according to OWASP Top 10 security vulnerabilities. To do this, existing literature has been surveyed using a systematic mapping study by phrasing two research questions. In the mapping study, a total of 41 studies dating from 1994 to 2014 were evaluated and mapped against the aforementioned categories. The outcome of this mapping study is current state-of-the-art of empirical research in web application area, strength and weaknesses of existing empirical work, best practices and possible directions for future research.
机译:随着近二十年来Web应用程序的迅猛发展,Web应用程序中的安全漏洞数量已经增加。随着Web应用程序领域的日趋成熟,已经在Web应用程序中报告了大量的经验研究,以解决易受攻击的Web应用程序的解决方案。但是,在寻求发现Web应用程序安全漏洞检测的新方法之前,需要分析和综合Web应用程序领域中现有的基于证据的研究。为此,我们计划进行系统的制图研究,以查看和报告现有Web应用程序研究中的最新经验工作。在本文中,我们旨在提供一种映射研究的描述,以综合在Web应用程序安全漏洞检测方法领域中报告的实证研究。提出的解决方案针对以下方面进行映射:(1)已针对其提出解决方案的软件开发阶段;以及(2)根据OWASP十大安全漏洞的Web应用程序漏洞映射。为此,通过对两个研究问题的措辞,使用系统的制图研究对现有文献进行了调查。在制图研究中,对1994年至2014年的41项研究进行了评估,并针对上述类别进行了制图。这项映射研究的结果是Web应用程序领域当前的最新经验研究,现有经验工作的优缺点,最佳实践以及未来研究的可能方向。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号