DocumentCode :
2927045
Title :
Understanding vulnerabilities by refining taxonomy
Author :
Ahmad, Nurul Haszeli ; Aljunid, Syed Ahmad ; Manan, Jamalul-lail Ab
Author_Institution :
Fac. of Comput. & Math. Sci., UiTM, Shah Alam, Malaysia
fYear :
2011
fDate :
5-8 Dec. 2011
Firstpage :
25
Lastpage :
29
Abstract :
Since early 90s, experts have proposed various ways to prevent exploitations and avoid releasing software with vulnerabilities. One way is through educating developers with information on known vulnerabilities using taxonomy of vulnerabilities as a guide. However, the guide using taxonomy of vulnerabilities has not shown to mitigate the issues. One possibility is due to the existence of gaps in producing the right and comprehensive taxonomy for software vulnerabilities. We studied various available taxonomies on software vulnerabilities. In this paper we propose and discuss our own criteria for taxonomy of software vulnerabilities with some improvement with particular emphasis on C programming.
Keywords :
C language; security of data; software fault tolerance; C programming; exploitation prevention; software errors; software vulnerabilities; taxonomy refinement; vulnerability understanding; Computers; Databases; Focusing; Security; Software; Taxonomy; USA Councils; errors; exploitation; fault; software errors; vulnerabilities classifications; vulnerabilities taxonomy; vulnerability; well defined taxonomy;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Information Assurance and Security (IAS), 2011 7th International Conference on
Conference_Location :
Melaka
Print_ISBN :
978-1-4577-2154-0
Type :
conf
DOI :
10.1109/ISIAS.2011.6122789
Filename :
6122789
Link To Document :
بازگشت