Title :
Misuse and abuse cases: getting past the positive
Author :
Hope, Paco ; McGraw, Gary ; Antón, Annie I.
Abstract :
Software development is all about making software do something: when software vendors sell their products, they talk about what the products do to make customers´ lives easier, such as encapsulating business processes or something similarly positive. Following this trend, most systems for designing software also tend to describe positive features. The authors provide a nonacademic introduction to the software security best practice of misuse and abuse cases, showing you how to put the basic science to work.
Keywords :
computer software; security of data; software reliability; abuse cases; misuse cases; software development; software security best practice; software vendors; Authentication; Authorization; Computer aided software engineering; Computer security; Heart; Privacy; Protection; Raw materials; Software systems; Web server; abuse cases; misuse cases; software design; software development;
Journal_Title :
Security & Privacy, IEEE
DOI :
10.1109/MSP.2004.17