International Conference on Information, Electronic and Computer Science (ICIECS 2010 E-BOOK)

Zibo,China,11.26-11.28,2010

ISBN: 978-1-935068-42-6 Scientific Research Publishing, USA

E-Book 2224pp Pub. Date: November 2010

Category: Computer Science & Communications

Price: $360

Title: A Vulnerability Static Detection Method Based on Flow Analysis
Source: International Conference on Information, Electronic and Computer Science (ICIECS 2010 E-BOOK) (pp 592-595)
Author(s): Yiqiang Zhang, College of Computer, Zhejiang University of Technology, Hangzhou, China, 310023
Hui Gui, College of Computer, Zhejiang University of Technology, Hangzhou, China, 310023
Abstract: The main problem of existing static vulnerability detection methods based on source code analysis is their high false positive and false negative, the main reason is lack of legally check to these data used in the program. Variable as an important component of the program, its validation is particularly important, This paper proposes a new static detection model to variables, this model combines the mature static analysis technology, and borrows the idea of data flow and control flow analysis technique in compiler, it can get contextual information, provide more accurate analysis method to the use of variables in the program.
Free SCIRP Newsletters
Copyright © 2006-2024 Scientific Research Publishing Inc. All Rights Reserved.
Top