Vai al contenuto principale della pagina
Titolo: | Engineering Secure Software and Systems [[electronic resource] ] : First International Symposium, ESSoS 2009 Leuven, Belgium, February 4-6, 2009, Proceedings / / edited by Fabio MASSACCI, Samuel Redwine, Nicola Zannone |
Pubblicazione: | Berlin, Heidelberg : , : Springer Berlin Heidelberg : , : Imprint : Springer, , 2009 |
Edizione: | 1st ed. 2009. |
Descrizione fisica: | 1 online resource (X, 201 p.) |
Disciplina: | 005.8 |
Soggetto topico: | Computer security |
Software engineering | |
Operating systems (Computers) | |
Algorithms | |
Management information systems | |
Computer science | |
Data encryption (Computer science) | |
Systems and Data Security | |
Software Engineering | |
Operating Systems | |
Algorithm Analysis and Problem Complexity | |
Management of Computing and Information Systems | |
Cryptology | |
Persona (resp. second.): | MASSACCIFabio |
RedwineSamuel | |
ZannoneNicola | |
Note generali: | Bibliographic Level Mode of Issuance: Monograph |
Nota di bibliografia: | Includes bibliographical references and index. |
Nota di contenuto: | Policy Verification and Enforcement -- Verification of Business Process Entailment Constraints Using SPIN -- From Formal Access Control Policies to Runtime Enforcement Aspects -- Idea: Trusted Emergency Management -- Model Refinement and Program Transformation -- Idea: Action Refinement for Security Properties Enforcement -- Pattern-Based Confidentiality-Preserving Refinement -- Architectural Refinement and Notions of Intransitive Noninterference -- Systematically Eradicating Data Injection Attacks Using Security-Oriented Program Transformations -- Secure System Development -- Report: Measuring the Attack Surfaces of Enterprise Software -- Report: Extensibility and Implementation Independence of the .NET Cryptographic API -- Report: CC-Based Design of Secure Application Systems -- Protection Poker: Structuring Software Security Risk Assessment and Knowledge Transfer -- Attack Analysis and Prevention -- Toward Non-security Failures as a Predictor of Security Faults and Failures -- A Scalable Approach to Full Attack Graphs Generation -- MEDS: The Memory Error Detection System -- Testing and Assurance -- Idea: Automatic Security Testing for Web Applications -- Report: Functional Security Testing Closing the Software – Security Testing Gap: A Case from a Telecom Provider -- Idea: Measuring the Effect of Code Complexity on Static Analysis Results. |
Sommario/riassunto: | This book constitutes the refereed proceedings of the First International Symposium on Engineering Secure Software and Systems, ESSoS 2009, held in Leuven, Belgium, in February 2009. The 10 revised full papers presented together with 7 industry reports and ideas papers were carefully reviewed and selected from 57 submissions. The papers are organized in topical sections on policy verification and enforcement, model refinement and program transformation, secure system development, attack analysis and prevention, as well as testing and assurance. |
Titolo autorizzato: | Engineering Secure Software and Systems |
ISBN: | 3-642-00199-8 |
Formato: | Materiale a stampa |
Livello bibliografico | Monografia |
Lingua di pubblicazione: | Inglese |
Record Nr.: | 996466004503316 |
Lo trovi qui: | Univ. di Salerno |
Opac: | Controlla la disponibilità qui |