首页> 外文OA文献 >The road to Hell is paved with good intentions: A story of (in)secure software development
【2h】

The road to Hell is paved with good intentions: A story of (in)secure software development

机译:通往地狱的道路铺设着良好的意图:安全软件开发的故事

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

In this paper, we present the results of a security assessment performed on a home care system based on SOA, realized as web services. The security design concepts of this platform were specifically tailored to meet new security challenges and to be compliant with legal frameworks applicable to the healthcare domain. This security design was fed as input to the development team,which implemented the system. However, our assessment revealed a software platform with severe security weaknesses and vulnerabilities, demonstrating pitfalls that are, or should be, well known.Our experience re-confirms that security must be built as an intrinsic software property and emphasizes the need for security awareness throughout the whole software development lifecycle.
机译:在本文中,我们介绍了在基于SOA(作为Web服务)的家庭护理系统上执行的安全评估的结果。该平台的安全设计概念经过专门定制,可以应对新的安全挑战,并符合适用于医疗保健领域的法律框架。该安全设计被作为开发团队的输入,该团队实施了该系统。但是,我们的评估显示出一个软件平台存在严重的安全漏洞和漏洞,表明存在或应该众所周知的陷阱我们的经验再次证实,安全性必须被构建为软件的固有属性,并强调在整个过程中都需要提高安全意识整个软件开发生命周期。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号