Automatically Extracting Threats from Extended Data Flow Diagrams

Automatically Extracting Threats from Extended Data Flow Diagrams
复制标题

DOI:
10.1007/978-3-319-30806-7_4
复制
发表时间:
2016-04
期刊:
--
影响因子:
--
通讯作者:
Bernhard J. Berger;K. Sohr;R. Koschke
Bernhard J. Berger;K. Sohr;R. Koschke
中科院分区:
其他
文献类型:
--
作者:
Bernhard J. Berger;K. Sohr;R. Koschke

文献摘要

相似文献

架构风险分析是开发无安全缺陷的软件的一个重要方面。然而,关于架构缺陷的知识却很少,特别是在中小型企业中。在本文中,我们提出了一种利用 Microsoft 威胁建模的实用架构风险分析方法。我们的技术将系统架构的创建与检测和收集架构缺陷的过程分离开来。这样,我们的方法允许软件架构师使用安全知识库自动检测软件架构中的漏洞。我们通过实际案例研究评估了我们的方法,重点关注物流应用。评估发现了几个对软件安全性产生重大影响的缺陷。
Architectural risk analysis is an important aspect of developing software that is free of security flaws. Knowledge on architectural flaws, however, is sparse, in particular in small or medium-sized enterprises. In this paper, we propose a practical approach to architectural risk analysis that leverages Microsoft’s threat modeling. Our technique decouples the creation of a system’s architecture from the process of detecting and collecting architectural flaws. This way, our approach allows an software architect to automatically detect vulnerabilities in software architectures by using a security knowledge base. We evaluated our approach with real-world case studies, focusing on logistics applications. The evaluation uncovered several flaws with a major impact on the security of the software.