Title :
Evaluating AVDL descriptions for web application vulnerability analysis
Author :
Le, Ha Thanh ; Loh, Peter Kok Keong
Author_Institution :
Sch. of Comput. Eng., Nanyang Technol. Univ., Singapore
Abstract :
Several vulnerability analysis techniques in web-based applications detect and report on different types of vulnerabilities. However, no single technique provides a generic technology-independent handling of Web-based vulnerabilities. In this paper we present our experience with and experimental exemplification of using the application vulnerability description language (AVDL) to realize a unified data model for technology-independent vulnerability analysis of Web applications. This work is part of a project that is funded by the Centre for Strategic Infocomm Technologies, Ministry of Defence Singapore.
Keywords :
Internet; high level languages; AVDL descriptions; Web application vulnerability analysis; application vulnerability description language; technology-independent vulnerability analysis; Algorithm design and analysis; Artificial intelligence; Computer networks; Information analysis; Internet; Mutual information; Paper technology; Statistical distributions; Uniform resource locators; Yarn; AVDL; vulnerability analysis; vulnerability description; web application vulnerability;
Conference_Titel :
Intelligence and Security Informatics, 2008. ISI 2008. IEEE International Conference on
Conference_Location :
Taipei
Print_ISBN :
978-1-4244-2414-6
Electronic_ISBN :
978-1-4244-2415-3
DOI :
10.1109/ISI.2008.4565084