找回密码
 To register

QQ登录

只需一步,快速开始

扫一扫,访问微社区

Titlebook: Security Compliance in Model-driven Development of Software Systems in Presence of Long-Term Evoluti; Sven Matthias Peldszus Book 2022 The

[复制链接]
楼主: 平凡人
发表于 2025-3-28 16:20:05 | 显示全部楼层
发表于 2025-3-28 22:24:04 | 显示全部楼层
Program Model for Object-oriented Languagesof a software system analyzable, we have to extract a suitable program representation from the source code of the software system. Common representations, such as UML models or abstract syntax trees (AST), are either too abstract for meaningful design-level quality and security analyses of the imple
发表于 2025-3-29 01:55:11 | 显示全部楼层
发表于 2025-3-29 04:54:43 | 显示全部楼层
Application to Legacy Projects using Reverse-Engineeringve initially developed using GRaViTY. In practice, software systems are often developed not using models as essential development artifacts at all. Nevertheless, informal modeling approaches are widely spread in the industry. If models are created at design time, these are often not maintained in th
发表于 2025-3-29 10:47:55 | 显示全部楼层
Static Security Compliance Checksnder development. Traditionally, security compliance is checked in manual security audits, e.g., as specified in the IEEE 1028-2009 standard for software reviews and audits. As the effort for such audits is very high, audits are only performed from time to time. For this reason, approaches like SecD
发表于 2025-3-29 14:34:52 | 显示全部楼层
Verification and Enforcement of Security at Run-time. Unfortunately, few approaches cover coupling these phases so far. Following our approach, during software development, different representations of a software system are created, e.g., to plan the security of a software system before implementing it. All of these single representations have to be
发表于 2025-3-29 18:52:19 | 显示全部楼层
发表于 2025-3-29 22:15:14 | 显示全部楼层
Specification of Variability throughout Variant-rich Software Systemstude of security threats. To allow dealing with these threats but also to allow traceability of security requirements on different system representations, we need an appropriate notation for security assumptions as well as for variability points. These requirements have to allow automated security a
发表于 2025-3-30 01:19:48 | 显示全部楼层
Security in UML Product Linesrmeate the entire software system, the system design needs to treat them as first-class citizens. To this end, model-based techniques, such as UMLsec, can be used to specify and analyze the consistency of security requirements in early phases, such as in architecture models at design time. However,
发表于 2025-3-30 06:22:22 | 显示全部楼层
Security Compliance and Restructuring in Variant-rich Software Systemsly, to severe challenges. Notably, this applies to software engineering tasks such as refactorings, refinements, and evolution steps, which, to support systematic management, are often expressed as model transformations, e.g., security-preserving refactorings or security violation patterns. The open
 关于派博传思  派博传思旗下网站  友情链接
派博传思介绍 公司地理位置 论文服务流程 影响因子官网 SITEMAP 大讲堂 北京大学 Oxford Uni. Harvard Uni.
发展历史沿革 期刊点评 投稿经验总结 SCIENCEGARD IMPACTFACTOR 派博系数 清华大学 Yale Uni. Stanford Uni.
|Archiver|手机版|小黑屋| 派博传思国际 ( 京公网安备110108008328) GMT+8, 2025-5-16 06:00
Copyright © 2001-2015 派博传思   京公网安备110108008328 版权所有 All rights reserved
快速回复 返回顶部 返回列表