Global ETD Search
Search theses and dissertations gathered from participating repositories worldwide. Every result links back to the library that holds it. No account is needed.
Results
Showing 1 to 16 of 16 for “"software vulnerabilities"”.
-
Decision Support of Security Assessment of Software Vulnerabilities in Industrial Practice
Software vulnerabilities are a well-known problem in current software projects. The situation becomes even more complicated, due to the ever-increasing complexity of the interconnections between both commercial and free open-source software (FOSS) projects. In this dissertation, we are aiming to …
-
Software Vulnerabilities in FOSS: From Assessment to Forecasting and Effective Usability
Free Open Source Software libraries are ubiquitous and their security is crucial. Many assessment methodologies and tools have been proposed to evaluate the security of these libraries. However, many of these methodologies are hard to be applied in practice as they lack context information. This …
-
Security Requirements for the Prevention of Modern Software Vulnerabilities and a Process for Incorporation into Classic Software Development Lifecycles
Software vulnerabilities and their associated exploits have been increasing over the last several years - this research attempts to reverse that trend. Currently, security experts recommend that concerns for security start at the earliest stage possible, generally during the requirements …
-
The Rhetoric of Commoditized Vulnerabilities: Ethical Discourses in Cybersecurity
… morally contentious practice of hackers selling software vulnerabilities to third parties instead of disclosing them to the affected technology companies. Drawing on grounded theory, I utilize a combination of quantitative word-level analysis and qualitative coding to assess how notions of right …
-
GARNET : a Graphical Attack graph and Reachability Network Evaluation Tool
… attacks, following recommendations to patch software vulnerabilities, and changing the attacker starting location to analyze external and internal attackers. Users are able to view a set of attack graph metrics that summarize different aspects of overall network security for a specific set of …
-
Design and evaluation of information flow signature for secure computation of applications
… data, in spite of potential hardware and software vulnerabilities. The technique does not require source code of or specifications about the malicious library function(s) called during execution of an application. The solution is based on the concept of Information Flow Signatures (IFS). …
-
Discovering Novel Microarchitectural Security Vulnerabilities in Modern Processors
… Many of these security issues are caused by vulnerabilities in software allowing for memory corruption, a kind of attack where the contents of a computer’s memory are corrupted by an attacker to change a program’s behavior. While much research has been done on how to improve software …
-
Assessing Security Vulnerabilities: An Application of Partial and End-Game Verification and Validation
Modern software applications are becoming increasingly complex, prompting a need for expandable software security assessment tools. Violable constraints/assumptions presented by Bazaz [1] are expandable and can be modified to fit the changing landscape of software systems. Partial and End-Game …
-
Automatic intrusion recovery with system-wide history
… of our computer systems are inevitable. New software vulnerabilities are discovered and exploited daily, but even if the software is bug-free, administrators may inadvertently make mistakes in configuring permissions, or unaware users may click on buttons in application installers with little …
-
Complete spatial safety for C and C++ using CHERI capabilities
… results in a constant stream of new exploitable software vulnerabilities and exploit techniques. Many exploit mitigations have been proposed and deployed over the years, yet none address the root issue: lack of memory safety. Most C and C++ implementations assume a memory model based on a linear …
-
CHERI Compartmentalisation for Embedded Systems
… tasks or leaking sensitive patients’ details. Software compartmentalisation has the potential to manage the attack vector better, defend against unknown future software vulnerabilities, and limit the consequences of potential successful attacks to the compromised component without affecting the …
-
Enhancing side-channel analysis through measurement, and high-power IEMI generation
… device. Unlike typical cyberattacks that exploit software vulnerabilities, this attack bypass conventional cybersecurity defenses by targeting the hardware layer directly with limited or zero physical access to the target device. The research focuses on the hardware architecture and design of two …
-
Reinforcing the weakest link in cyber security: securing systems and software against attacks targeting unwary users
… perform, such as browsing a webpage, downloading software to their computers, or installing an application to their mobile devices. My thesis work aims to secure software and systems by reducing or eliminating the chances where users’ mere action can unintentionally enable external exploits and …
-
Visualizing Memory Utilization for the Purpose of Vulnerability Analysis
… the more dangerous ones, directly target program vulnerabilities. The increase in attacks has prompted a need to develop new ways to classify, detect, and avoid vulnerabilities. The effectiveness of these goals relies on the development of new methods and tools that facilitate the process of …