期刊文献+

源代码分析技术的理论与实践发展 被引量:2

Theory and Practice of Source code Analysis
下载PDF
导出
摘要 源代码分析技术对于软件安全缺陷分析是一项非常重要的手段。分析了软件源代码分析工具的技术手段和发展过程,最后对源代码分析的理论和实践进行了分析总结。 Source code analysis is an important technique for analyzing software secure vulnerabilities.Development of these technical means are analyzed,and theory and practice of source code analysis are discussed.
出处 《计算机安全》 2011年第1期7-10,共4页 Network & Computer Security
基金 国家863计划(2009AA01Z403 2009AA01Z435)资助
关键词 源代码分析 静态分析 程序分析 安全性分析 Source code analysis static analysis software analysis secure analysis
  • 相关文献

参考文献3

二级参考文献11

  • 1CHESS B, McGRAW G. Static analysis for security [ J ]. Security & Privacy Magazine ,2004,2 ( 6 ) :76-79.
  • 2BERGER M, HONDA K, YOSHIDA N. A logical analysis of aliasing for higher-order imperative functions [ C ]//Proc of ICFP' 05. 2005.
  • 3AMTOFT T, BANERJEE A. Information flow analysis in logical form, Technical Report CIS TR 2004-3 [ R ]. [ S. l. ] :Kansas State University, 2004.
  • 4SABELFELD A, MYERS A C. Language-based information-flow security [ J ]. I EEE d Selected Areas in Communications, 2003,21 : 5- 19.
  • 5YONG S H, HORWITZ S. Pointer-range analysis [ C ]//Proc of the 11th International Static Analysis Symposium. Verona, Italy [ s. n. ], 2004:26- 28.
  • 6SUN Qi, BANERJEE A, NAUMANN D A. Modular and constraintbased information flow inference fur an object-oriented language [ C ]//Proc of the 11 th International Static Analysis Symposium. Yeroha, Italy:[s. n. ] ,2004:84-99.
  • 7FLANAGAN C, FREUND S N. Type inference against races[ C ]// Proc of the 11 th International Static: Analysis Symposium. Verona, Italy:[ s. n. ] ,2004:116-132.
  • 8McGRAW G. Software security : building security[ M ]. [ S. l. ] : Addison Wesley Professional,2006.
  • 9WAGNER D,FOSTER J S,BREWER E A,et al. A first step towards automated detection of buffer overrun vulnerabilities [ C ]//Proc of Networking and Distributed System Security Symposium. San Diego, California: [ s. n. ] ,2000.
  • 10VIEGA J, BLOCH J T, KOHNO T, et al. ITS4: a static vulnerability seanner for C and CI-I- code[ C]//Proc of the 16th Annual Computer Security Applications Conference. 2000.

共引文献12

同被引文献9

引证文献2

二级引证文献11

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部