Global ETD Search

Search theses and dissertations gathered from participating repositories worldwide. Every result links back to the library that holds it. No account is needed.

Results

Showing 1 to 16 of 16 for “"software vulnerabilities"”.

  1. Decision Support of Security Assessment of Software Vulnerabilities in Industrial Practice

    Software vulnerabilities are a well-known problem in current software projects. The situation becomes even more complicated, due to the ever-increasing complexity of the interconnections between both commercial and free open-source software (FOSS) projects. In this dissertation, we are aiming to …

    trento Repository record for Decision Support of Security Assessment of Software Vulnerabilities in Industrial Practice (opens in a new tab)

  2. Software Vulnerabilities in FOSS: From Assessment to Forecasting and Effective Usability

    Free Open Source Software libraries are ubiquitous and their security is crucial. Many assessment methodologies and tools have been proposed to evaluate the security of these libraries. However, many of these methodologies are hard to be applied in practice as they lack context information. This …

    trento Repository record for Software Vulnerabilities in FOSS: From Assessment to Forecasting and Effective Usability (opens in a new tab)

  3. Security Requirements for the Prevention of Modern Software Vulnerabilities and a Process for Incorporation into Classic Software Development Lifecycles

    Software vulnerabilities and their associated exploits have been increasing over the last several years - this research attempts to reverse that trend. Currently, security experts recommend that concerns for security start at the earliest stage possible, generally during the requirements …

    vt Repository record for Security Requirements for the Prevention of Modern Software Vulnerabilities and a Process for Incorporation into Classic Software Development Lifecycles (opens in a new tab)

  4. The Rhetoric of Commoditized Vulnerabilities: Ethical Discourses in Cybersecurity

    … morally contentious practice of hackers selling software vulnerabilities to third parties instead of disclosing them to the affected technology companies. Drawing on grounded theory, I utilize a combination of quantitative word-level analysis and qualitative coding to assess how notions of right …

    vt Repository record for The Rhetoric of Commoditized Vulnerabilities: Ethical Discourses in Cybersecurity (opens in a new tab)

  5. GARNET : a Graphical Attack graph and Reachability Network Evaluation Tool

    … attacks, following recommendations to patch software vulnerabilities, and changing the attacker starting location to analyze external and internal attackers. Users are able to view a set of attack graph metrics that summarize different aspects of overall network security for a specific set of …

    mit Repository record for GARNET : a Graphical Attack graph and Reachability Network Evaluation Tool (opens in a new tab)

  6. Design and evaluation of information flow signature for secure computation of applications

    … data, in spite of potential hardware and software vulnerabilities. The technique does not require source code of or specifications about the malicious library function(s) called during execution of an application. The solution is based on the concept of Information Flow Signatures (IFS). …

    uiuc Repository record for Design and evaluation of information flow signature for secure computation of applications (opens in a new tab)

  7. Discovering Novel Microarchitectural Security Vulnerabilities in Modern Processors

    … Many of these security issues are caused by vulnerabilities in software allowing for memory corruption, a kind of attack where the contents of a computer’s memory are corrupted by an attacker to change a program’s behavior. While much research has been done on how to improve software

    mit Repository record for Discovering Novel Microarchitectural Security Vulnerabilities in Modern Processors (opens in a new tab)

  8. Assessing Security Vulnerabilities: An Application of Partial and End-Game Verification and Validation

    Modern software applications are becoming increasingly complex, prompting a need for expandable software security assessment tools. Violable constraints/assumptions presented by Bazaz [1] are expandable and can be modified to fit the changing landscape of software systems. Partial and End-Game …

    vt Repository record for Assessing Security Vulnerabilities: An Application of Partial and End-Game Verification and Validation (opens in a new tab)

  9. Automatic intrusion recovery with system-wide history

    … of our computer systems are inevitable. New software vulnerabilities are discovered and exploited daily, but even if the software is bug-free, administrators may inadvertently make mistakes in configuring permissions, or unaware users may click on buttons in application installers with little …

    mit Repository record for Automatic intrusion recovery with system-wide history (opens in a new tab)

  10. Complete spatial safety for C and C++ using CHERI capabilities

    … results in a constant stream of new exploitable software vulnerabilities and exploit techniques. Many exploit mitigations have been proposed and deployed over the years, yet none address the root issue: lack of memory safety. Most C and C++ implementations assume a memory model based on a linear …

    cambridge Repository record for Complete spatial safety for C and C++ using CHERI capabilities (opens in a new tab)

  11. CHERI Compartmentalisation for Embedded Systems

    … tasks or leaking sensitive patients’ details. Software compartmentalisation has the potential to manage the attack vector better, defend against unknown future software vulnerabilities, and limit the consequences of potential successful attacks to the compromised component without affecting the …

    cambridge Repository record for CHERI Compartmentalisation for Embedded Systems (opens in a new tab)

  12. Enhancing side-channel analysis through measurement, and high-power IEMI generation

    … device. Unlike typical cyberattacks that exploit software vulnerabilities, this attack bypass conventional cybersecurity defenses by targeting the hardware layer directly with limited or zero physical access to the target device. The research focuses on the hardware architecture and design of two …

    vt Repository record for Enhancing side-channel analysis through measurement, and high-power IEMI generation (opens in a new tab)

  13. Reinforcing the weakest link in cyber security: securing systems and software against attacks targeting unwary users

    … perform, such as browsing a webpage, downloading software to their computers, or installing an application to their mobile devices. My thesis work aims to secure software and systems by reducing or eliminating the chances where users’ mere action can unintentionally enable external exploits and …

    gatech Repository record for Reinforcing the weakest link in cyber security: securing systems and software against attacks targeting unwary users (opens in a new tab)

  14. Visualizing Memory Utilization for the Purpose of Vulnerability Analysis

    … the more dangerous ones, directly target program vulnerabilities. The increase in attacks has prompted a need to develop new ways to classify, detect, and avoid vulnerabilities. The effectiveness of these goals relies on the development of new methods and tools that facilitate the process of …

    vt Repository record for Visualizing Memory Utilization for the Purpose of Vulnerability Analysis (opens in a new tab)