Global ETD Search
Search theses and dissertations gathered from participating repositories worldwide. Every result links back to the library that holds it. No account is needed.
Results
Showing 1 to 11 of 11 for “"owasp"”.
-
Madurez del ciclo de vida del desarrollo de software seguro: OWASP Software Assurance Maturity Model (SAMM)
… madurez del aseguramiento del software SAMM de OWASP. En la actualidad, la seguridad de los sistemas de información es un aspecto clave para asegurar la prestación de servicios seguros, resilientes y confiables, así como para garantizar algunos derechos fundamentales de las personas como puede …
-
Vývoj kalkulátoru pro hodnocení zranitelností v Javascriptu
… to CVSS (Common Vulnerability Scoring System) a OWASP (Open Web Application Security Project) Risk Rating Methodology. Jsou popsány jejich části, metriky a metody samotného výpočtu hodnocení. Následně jsou tyto systémy porovnány a jsou určeny jejich silné a slabé stránky. Práce dále hodnotí …
-
Beyond rules: how Large Language Models are redefining cryptographic misuse detection
… Claude, and Gemini. Using benchmark datasets (OWASP, CryptoAPI, and MASC), we evaluate the effectiveness of each tool in identifying cryptographic misuses. Our findings show that GPT 4-o-mini surpasses current state-of-the-art static analysis tools on the CryptoAPI and MASC datasets, though it …
-
Analyzing and evaluating security features in software requirements
… standards, e.g., those introduced by the ISO and OWASP, are compared against annotated software project documents for textual entailment relationships (NLP), and the results are used to train a neural network model (ML) for classifying security-based requirements. Hence, this approach aims to …
-
Evaluación comparativa de agentes de inteligencia artificial en la resolución de vulnerabilidades de seguridad en entornos de integración continua
… (CI/CD). La metodología empleó la aplicación web OWASP Juice Shop como entorno vulnerable, interconectado y de alta complejidad, comparando el desempeño de tres modelos de vanguardia disponibles en GitHub Copilot: Gemini 3.1 Pro, Claude Opus 4.6 y GPT-5.4. Los resultados evidenciaron una eficacia …
-
Static Analysis of Android Secure Application Development Process with FindSecurityBugs
… secure mobile software development based on OWASP mobile security recommendations to promote secure mobile software development education and meet the emerging industrial and educational needs.</p>
-
Unveiling Emerging Web Application Attack Surfaces
… and the emergence of new attack surfaces. The OWASP Top 10 consistently shows injection attacks and insecure designs among the most prevalent threats. While issues such as XSS and SQLi have been extensively studied, many other vulnerabilities within these categories remain insufficiently …
-
A Quantitative Security Assessment of Modern Cyber Attacks. A Framework for Quantifying Enterprise Security Risk Level Through System's Vulnerability Analysis by Detecting Known and Unknown Threats
… and open web application security project (OWASP). Probability theory is applied against known attacks to create the security metrics and, detection and prevention method is suggested for company network against unknown attacks. Our security metrics are clear and repeatable that can be …
-
A Framework for Hybrid Intrusion Detection Systems
… The Open Web Application Security Project (OWASP), generally defines web application security violations as unauthorized or unintentional exposure, disclosure, or loss of personal information. These breaches occur without the company’s knowledge and it often takes a while before the web …
-
A Comparison of the Usability of Security Mechanisms Provided by iOS and Android
… a direct response to the number one spot on the OWASP Top Ten Mobile Vulnerabilities list. As a result, our primary goal is to identify whether or not iOS and Android are creating usable security mechanisms. To do this we first proposed an evaluation framework that is tailored to evaluate the …
-
Rules Based Analysis Engine for Application Layer IDS
<p>Web application attack volume, complexity, and costs have risen as people, companies, and entire industries move online. Solutions implemented to defend web applications against malicious activity have traditionally been implemented at the network or host layer. While this is helpful for …