1. Software Security Assessment through Specification Mutations and Fault Injection
- Author
-
M. Laakso, A. Takanen, and Rauli Kaksonen
- Subjects
business.industry ,Computer science ,computer.internet_protocol ,Vulnerability ,Information security ,Fault injection ,Computer security ,computer.software_genre ,Software ,Robustness (computer science) ,Software security assurance ,Protocol specification ,Wireless Application Protocol ,business ,computer - Abstract
Numerous information security vulnerabilities exist in contemporary software products. The purpose of this paper is to present a practical approach for software security assessment based on fault injection. The approach has been introduced and applied in a real world case, Wireless Application Protocol gateways. The approach has been effective in systematically uncovering robustness problems in the components tested. The main impact is expected from early elimination of trivial vulnerabilities and elevated awareness in robustness problems and their security implications.
- Published
- 2001
- Full Text
- View/download PDF