[Engineering Paper] Enabling the Continuous Analysis of Security Vulnerabilities with VulData7
暂无分享,去创建一个
[1] Gary McGraw,et al. Software Security Testing , 2004, IEEE Secur. Priv..
[2] Tracy Hall,et al. A Systematic Literature Review on Fault Prediction Performance in Software Engineering , 2012, IEEE Transactions on Software Engineering.
[3] Richard Lippmann,et al. Testing static analysis tools using exploitable buffer overflows from open source code , 2004, SIGSOFT '04/FSE-12.
[4] Yves Le Traon,et al. An Empirical Analysis of Vulnerabilities in OpenSSL and the Linux Kernel , 2016, 2016 23rd Asia-Pacific Software Engineering Conference (APSEC).
[5] William K. Robertson,et al. LAVA: Large-Scale Automated Vulnerability Addition , 2016, 2016 IEEE Symposium on Security and Privacy (SP).
[6] Michael Howard,et al. The security development lifecycle : SDL, a process for developing demonstrably more secure software , 2006 .
[7] Gary McGraw. Automated Code Review Tools for Security , 2008 .
[8] Yuanyuan Zhou,et al. Bug characteristics in open source software , 2013, Empirical Software Engineering.
[9] Laurie A. Williams,et al. Evaluating Complexity, Code Churn, and Developer Activity Metrics as Indicators of Software Vulnerabilities , 2011, IEEE Transactions on Software Engineering.
[10] Yves Le Traon,et al. On the Impact of Tokenizer and Parameters on N-Gram Based Code Analysis , 2018, 2018 IEEE International Conference on Software Maintenance and Evolution (ICSME).
[11] Tracy Hall,et al. Reproducibility and replicability of software defect prediction studies , 2018, Inf. Softw. Technol..
[12] Yves Le Traon,et al. Vulnerability Prediction Models: A Case Study on the Linux Kernel , 2016, 2016 IEEE 16th International Working Conference on Source Code Analysis and Manipulation (SCAM).