【24h】

Torbit: an Open Source Flaw Measurement Tool Suite

机译:TOBIT:一个开源泄漏测量工具套件

获取原文

摘要

We present our experience in developing an open source tool for the measurement of security flaws. Since security flaws result from the unauthorized flow of information, these flaws can be measured and compared based on the amount of information that flows, how "far" it flows, and the value of the information. Flaws can then be compared and careful security testers can get the most security possible given a limited set of resources. The development of a tool to partially automate this process will prove to be an asset to the open source community in that the "many eyes" can be directed and these resources prioritized in order to patch flaws in the most efficient manner and minimize downtime and risk.
机译:我们展示了我们在开发用于测量安全缺陷的开源工具方面的经验。由于安全缺陷由未经授权的信息流程产生,因此可以根据流动的信息量,如何“远方”,以及信息的价值来测量这些缺陷。然后可以比较缺陷,并且仔细的安全测试仪可以给出有限的资源集可能获得最多的安全性。部分自动化此过程的工具将被证明是开源社区的资产,因为可以指导“许多眼睛”,并优先考虑这些资源,以便以最有效的方式修补缺陷,并最大限度地减少停机时间和风险最小化。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号