Traditional security evaluation of software focuses on detecting and patching known vulnerabilities. In this study, we propose evaluating security based on an antipattern approach, which shifts attention to broader architectural and coding practices. This methodology identifies common design or implementation patterns that may lead to security vulnerabilities. By recognizing and rectifying suboptimal practices, it aims to prevent security issues before they arise and encourages secure coding principles. This paper introduces the foundational framework for this innovative security assessment, highlighting its potential impact on software security.

错误:搜索内容不能为空,请输入英文关键词
错误:关键词超出字数限制,请精简
高级检索

Evaluation of Software Security Based on Antipattern Approach

  • Roberto Andrade,
  • Jenny Torres,
  • Denis Araque,
  • Johana Molina

摘要

Traditional security evaluation of software focuses on detecting and patching known vulnerabilities. In this study, we propose evaluating security based on an antipattern approach, which shifts attention to broader architectural and coding practices. This methodology identifies common design or implementation patterns that may lead to security vulnerabilities. By recognizing and rectifying suboptimal practices, it aims to prevent security issues before they arise and encourages secure coding principles. This paper introduces the foundational framework for this innovative security assessment, highlighting its potential impact on software security.