首页> 外文会议>National Workshop on Information Assurance Research >An Automated Tool for Assessing Security-Critical Designs and Programs
【24h】

An Automated Tool for Assessing Security-Critical Designs and Programs

机译:用于评估安全关键设计和程序的自动化工具

获取原文

摘要

This paper describes in detail our Security-Critical Program Analyser (SCPA). SCPA is used to assess the security of a given program based on its design or source code with regard to data flow-based metrics. Furthermore, it allows software developers to generate a UML-like class diagram of their program and annotate its confidential classes, methods and attributes. SCPA is also capable of producing Java source code for the generated design of a given program. This source code can then be compiled and the resulting Java bytecode program can be used by the tool to assess the program??s overall security based on our security metrics.
机译:本文详细介绍了我们的安全关键计划分析仪(SCPA)。 SCPA用于根据基于数据流的度量的设计或源代码来评估给定程序的安全性。 此外,它允许软件开发人员生成其程序的UML类类图,并注释其机密类,方法和属性。 SCPA还能够为给定程序的生成设计产生Java源代码。 然后可以编译此源代码,并且工具可以使用生成的Java字节码程序,以基于我们的安全指标来评估程序的整体安全性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号