Toward a Formal Traceability Model for Efficient Security Validation

被引:0
|
作者
Ebert, Christof [1 ]
Ray, Ruschil [2 ]
机构
[1] Vector Consulting Serv, D-70499 Stuttgart, Germany
[2] Univ Stuttgart, D-70569 Stuttgart, Germany
关键词
Industries; Computational modeling; Computer security; REQUIREMENTS;
D O I
10.1109/MC.2021.3095822
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
A formal traceability model is presented with a real-world application of a gray-box penetration test. Such formal traceability improves test effectiveness and efficiency, thus underlining the applicability and value of formal methods in an industry context.
引用
收藏
页码:68 / 78
页数:11
相关论文
共 50 条
  • [1] Validation of Data Warehouse Requirements Model Traceability Metrics Using a Formal Framework
    Rakhee
    Kumar, Manoj
    [J]. 2015 2ND INTERNATIONAL CONFERENCE ON COMPUTING FOR SUSTAINABLE GLOBAL DEVELOPMENT (INDIACOM), 2015, : 216 - 221
  • [2] Formal Specification and Validation of Security Policies
    Bourdier, Tony
    Cirstea, Horatiu
    Jaume, Mathieu
    Kirchner, Helene
    [J]. FOUNDATIONS AND PRACTICE OF SECURITY, 2011, 6888 : 148 - +
  • [4] Formal and efficient enforcement of security policies
    Langar, A
    Mejri, M
    [J]. FCS '05: Proceedings of the 2005 International Conference on Foundations of Computer Science, 2005, : 143 - 149
  • [5] Reconstructing a formal security model
    Ahn, GJ
    Hong, SP
    Shin, ME
    [J]. INFORMATION AND SOFTWARE TECHNOLOGY, 2002, 44 (11) : 649 - 657
  • [6] Formal security model of multisignatures
    Komano, Yuichi
    Ohta, Kazuo
    Shimbo, Atsushi
    Kawamura, Shinichi
    [J]. INFORMATION SECURITY, PROCEEDINGS, 2006, 4176 : 146 - 160
  • [7] A fuzzy traceability vector model for requirements validation
    Gaur, Vibha
    Soni, Anuja
    [J]. INTERNATIONAL JOURNAL OF COMPUTER APPLICATIONS IN TECHNOLOGY, 2013, 47 (2-3) : 172 - 188
  • [8] Tool Support for Validation of Formal System Models: Interactive Visualization and Requirements Traceability
    Kamburjan, Eduard
    Stromberg, Jonas
    [J]. ELECTRONIC PROCEEDINGS IN THEORETICAL COMPUTER SCIENCE, 2019, (310): : 70 - 85
  • [9] Requirements traceability issues: Generic model, methodology and formal basis
    Sahraoui, AEK
    [J]. INTERNATIONAL JOURNAL OF INFORMATION TECHNOLOGY & DECISION MAKING, 2005, 4 (01) : 59 - 80
  • [10] Toward the Ontology-Based Security Verification and Validation Model for the Vehicular Domain
    Shaaban, Abdelkader Magdy
    Schmittner, Christoph
    Quirchmayr, Gerald
    Mohamed, A. Baith
    Gruber, Thomas
    Schikuta, Erich
    [J]. NEURAL INFORMATION PROCESSING (ICONIP 2019), PT IV, 2019, 1142 : 521 - 529