메뉴 건너뛰기




Volumn , Issue , 2014, Pages

Simulation of Built-in PHP Features for Precise Static Code Analysis

Author keywords

[No Author keywords available]

Indexed keywords

APPLICATION PROGRAMS; CODES (SYMBOLS); COMPUTER SIMULATION LANGUAGES; DATA FLOW ANALYSIS;

EID: 85065902727     PISSN: None     EISSN: None     Source Type: Conference Proceeding    
DOI: 10.14722/ndss/2014.23262     Document Type: Conference Paper
Times cited : (102)

References (44)
  • 1
    • 77955423741 scopus 로고    scopus 로고
    • Finding Bugs in Web Applications Using Dynamic Test Generation and Explicit-State Model Checking
    • S. Artzi, A. Kiezun, J. Dolby, F. Tip, D. Dig, A. Paradkar, and M. D. Ernst. Finding Bugs in Web Applications Using Dynamic Test Generation and Explicit-State Model Checking. IEEE Trans. Softw. Eng., 36(4), 2010.
    • (2010) IEEE Trans. Softw. Eng , vol.36 , Issue.4
    • Artzi, S.1    Kiezun, A.2    Dolby, J.3    Tip, F.4    Dig, D.5    Paradkar, A.6    Ernst, M. D.7
  • 9
    • 85180623723 scopus 로고    scopus 로고
    • T. P. Group. as of July 2013
    • T. P. Group. PHP: Manual Quick Reference. http://php.net/quickref.php, as of July 2013.
    • PHP: Manual Quick Reference
  • 18
    • 33751027156 scopus 로고    scopus 로고
    • Pixy: A Static Analysis Tool for Detecting Web Application Vulnerabilities (Short Paper)
    • N. Jovanovic, C. Kruegel, and E. Kirda. Pixy: A Static Analysis Tool for Detecting Web Application Vulnerabilities (Short Paper). In IEEE Symposium on Security and Privacy, 2006.
    • (2006) IEEE Symposium on Security and Privacy
    • Jovanovic, N.1    Kruegel, C.2    Kirda, E.3
  • 20
    • 77957112438 scopus 로고    scopus 로고
    • Static Analysis for Detecting Taint-style Vulnerabilities in Web Applications
    • N, August 08 2010
    • N. Jovanovic, C. Kruegel, and E. Kirda. Static Analysis for Detecting Taint-style Vulnerabilities in Web Applications. Journal of Computer Security, Vol 18, N5, August 2010, 08 2010.
    • (2010) Journal of Computer Security , vol.18 , Issue.5
    • Jovanovic, N.1    Kruegel, C.2    Kirda, E.3
  • 24
    • 84923564816 scopus 로고    scopus 로고
    • Finding Security Vulnerabilities in Java Applications with Static Analysis
    • V. B. Livshits and M. S. Lam. Finding Security Vulnerabilities in Java Applications with Static Analysis. In USENIX Security Symposium, 2005.
    • (2005) USENIX Security Symposium
    • Livshits, V. B.1    Lam, M. S.2
  • 28
    • 85180630178 scopus 로고    scopus 로고
    • as of July 2013
    • myWebland Group. myBloggie Weblog System. http://mybloggie.mywebland.com/, as of July 2013.
    • myBloggie Weblog System
  • 29
    • 79953672829 scopus 로고    scopus 로고
    • Dynamic Taint Analysis for Automatic Detection, Analysis, and Signature Generation of Exploits on Commodity Software
    • J. Newsome and D. Song. Dynamic Taint Analysis for Automatic Detection, Analysis, and Signature Generation of Exploits on Commodity Software. In Symposium on Network and Distributed System Security (NDSS), 2005.
    • (2005) Symposium on Network and Distributed System Security (NDSS)
    • Newsome, J.1    Song, D.2
  • 31
    • 85180637360 scopus 로고    scopus 로고
    • as of July 2013
    • PHP-Nuke. CMS Portal Solution. http://www.phpnuke.org/, as of July 2013.
    • CMS Portal Solution
  • 35
    • 77955182005 scopus 로고    scopus 로고
    • All You Ever Wanted to Know about Dynamic Taint Analysis and Forward Symbolic Execution (but Might Have Been Afraid to Ask)
    • E. J. Schwartz, T. Avgerinos, and D. Brumley. All You Ever Wanted to Know about Dynamic Taint Analysis and Forward Symbolic Execution (but Might Have Been Afraid to Ask). In IEEE Symposium on Security and Privacy, 2010.
    • (2010) IEEE Symposium on Security and Privacy
    • Schwartz, E. J.1    Avgerinos, T.2    Brumley, D.3
  • 37
    • 57849137358 scopus 로고    scopus 로고
    • On Automated Prepared Statement Generation to Remove SQL Injection Vulnerabilities
    • S. Thomas, L. Williams, and T. Xie. On Automated Prepared Statement Generation to Remove SQL Injection Vulnerabilities. Information and Software Technology, 51(3):589–598, 2009.
    • (2009) Information and Software Technology , vol.51 , Issue.3 , pp. 589-598
    • Thomas, S.1    Williams, L.2    Xie, T.3
  • 38
    • 85180629850 scopus 로고    scopus 로고
    • as of July 2013
    • UtopiaSoft. Utopia News Pro. http://www.utopiasoftware.net/newspro/, as of July 2013.
    • Utopia News Pro
  • 43
    • 84910681237 scopus 로고    scopus 로고
    • Static Detection of Security Vulnerabilities in Scripting Languages
    • Y. Xie and A. Aiken. Static Detection of Security Vulnerabilities in Scripting Languages. In USENIX Security Symposium, 2006.
    • (2006) USENIX Security Symposium
    • Xie, Y.1    Aiken, A.2


* 이 정보는 Elsevier사의 SCOPUS DB에서 KISTI가 분석하여 추출한 것입니다.