Title :
Security Testing: Turning Practice into Theory
Author_Institution :
Fraunhofer Inst. for Secure Inf. Technol. SIT, Darmstadt
Abstract :
This position paper proposes a research agenda for the field of security testing. It gives a critical account of the state of the art as seen by a practitioner and identifies questions that research failed to answer so far, or failed to answer in such a way that it would have had an impact in the real world. Three categories of research problems are proposed: theory of vulnerabilities, theory of security testing, and tools and techniques.
Keywords :
program testing; security of data; security testing; software systems; theory of vulnerabilities; Buffer overflow; Information security; Information technology; Operating systems; Software quality; Software systems; Software testing; System testing; Turning; Usability;
Conference_Titel :
Software Testing Verification and Validation Workshop, 2008. ICSTW '08. IEEE International Conference on
Conference_Location :
Lillehammer
Print_ISBN :
978-0-7695-3388-9
DOI :
10.1109/ICSTW.2008.38