首页> 外文期刊>International Journal of Computer Networks & Communications >Analytic Hierarchy Process-based Fuzzy Measurement to Quantify Vulnerabilities of Web Applications
【24h】

Analytic Hierarchy Process-based Fuzzy Measurement to Quantify Vulnerabilities of Web Applications

机译:基于分析层次的基于过程的模糊测量来量化Web应用程序的漏洞

获取原文
           

摘要

Much research has been conducted to detect vulnerabilities of Web Applications; however, these never proposed a methodology to measure the vulnerabilities either qualitatively or quantitatively. In this paper, a methodology is proposed to investigate the quantification of vulnerabilities in Web Applications. We applied the Goal Question Metrics (GQM) methodology to determine all possible security factors and subfactors of Web Applications in the Department of Transportation (DOT) as our proof of concept. Then we introduced a Multi-layered Fuzzy Logic (MFL) approach based on the security sub-factorsa?? prioritization in the Analytic Hierarchy Process (AHP). Using AHP, we weighted each security sub-factor before the quantification process in the Fuzzy Logic to handle imprecise crisp number calculation.
机译:已经进行了许多研究以检测Web应用程序的漏洞;然而,这些从未提出过一种定性或定量衡量漏洞的方法。本文提出了一种方法来调查Web应用程序中漏洞的量化。我们应用了目标问题指标(GQM)方法,以确定运输部(DOT)中的所有可能的安全因子和地区,作为我们的概念证明。然后我们介绍了一种基于安全子因素的多层模糊逻辑(MFL)方法??分析层次结构(AHP)中的优先级排序。使用AHP,我们在模糊逻辑中的量化过程之前加权每个安全子因素来处理不精确的清晰度计算。

著录项

获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号