The need for functional security testing

被引:0
|
作者
Axelrod, C. Warren [1 ]
机构
[1] Delta Risk, P.O. Box 234030, Great Neck, NY 11023, United States
来源
CrossTalk | 2011年 / 24卷 / 02期
关键词
Software testing;
D O I
暂无
中图分类号
学科分类号
摘要
Despite extensive testing of application functionality and security, we see many instances of software, when attacked or during normal operation, performing adversely in ways that were not anticipated. In large part, this is due to software assurance staff not testing fully for negative functionality, that is, ensuring that applications do not do what they are not supposed to. There are many reasons for this, including the relative enormity of the task, the pressure to implement quickly, and the lack of qualified testers. In this article, we will examine these issues and suggest ways in which we can achieve some measure of assurance that applications will not behave inappropriately under a broad range of conditions.
引用
收藏
页码:17 / 21
相关论文
共 50 条
  • [21] THE NEED FOR DIAGNOSTIC TESTING
    Olander, Herbert T.
    ELEMENTARY SCHOOL JOURNAL, 1933, 33 (10): : 736 - 745
  • [22] TESTING NEED FOR ERUCTATION
    PENCHINA, CM
    PENCHINA, MS
    PEDIATRICS, 1971, 47 (06) : 1089 - &
  • [23] The need for pile testing
    Tchepak, S
    STATNAMIC LOADING TEST, 2000, : 243 - 252
  • [24] THE NEED OF PREVENTIVE TESTING
    Brueckner, Leo J.
    JOURNAL OF EDUCATIONAL RESEARCH, 1939, 32 (06): : 456 - 457
  • [25] The need for conformance testing
    Wolle, Jochen
    Wheelwright, Lynn
    EE-EVALUATION ENGINEERING, 2008, 47 (09): : 54 - +
  • [26] Can I Reach You? Do I Need To? New Semantics in Security Policy Specification and Testing
    Katsis, Charalampos
    Cicala, Fabrizio
    Thomsen, Dan
    Ringo, Nathan
    Bertino, Elisa
    PROCEEDINGS OF THE 26TH ACM SYMPOSIUM ON ACCESS CONTROL MODELS AND TECHNOLOGIES, SACMAT 2021, 2021, : 165 - 174
  • [27] Monitoring based on IOSTS for testing functional and security properties: Application to an Automotive case study
    Mouttappa, Pramila
    Maag, Stephane
    Cavalli, Ana
    2013 IEEE 37TH ANNUAL COMPUTER SOFTWARE AND APPLICATIONS CONFERENCE (COMPSAC), 2013, : 1 - 10
  • [28] Testing for software security
    Thompson, HH
    Whittaker, JA
    DR DOBBS JOURNAL, 2002, 27 (11): : 24 - +
  • [29] Ongoing security testing
    Siemens Insight Consulting
    Comput. Fraud Secur., 2007, 2 (18-20):
  • [30] Security Testing for Chatbots
    Bozic, Josip
    Wotawa, Franz
    TESTING SOFTWARE AND SYSTEMS (ICTSS 2018), 2018, 11146 : 33 - 38