首页> 外文期刊>International Journal of Applied Engineering Research >Performance Evaluation of Web Application Security Scanners for Prevention and Protection against Vulnerabilities
【24h】

Performance Evaluation of Web Application Security Scanners for Prevention and Protection against Vulnerabilities

机译:Web应用程序安全扫描仪的性能评估预防和保护漏洞

获取原文
获取原文并翻译 | 示例
           

摘要

With the increasing development of the Internet, web applications have become increasingly vulnerable and exposed to malicious attacks which affect essential properties such as confidentiality, integrity or availability of information systems. To deal with these malicious threats, web application developers and IT security administrators have used the web application vulnerabilities scanners (WAVS) as scanning tools that regularly audit web applications to check for exploitable vulnerabilities. In today's market, a large number of web application scanning tools are available. Though these tools are available in market, the question is how efficient they are in addressing security concerns in web applications. The primary focus of this Article is to assess the effectiveness and performance of eleven scanners as far as vulnerability detection in web applications is concerned. This evaluation is multifunctional as it can be used to specify the degree of scanners 'efficiency, extract conclusions about their abilities to detect vulnerabilities, and prevent others by making recommendations of the use of WAVS by companies or organizations.
机译:随着互联网发展的越来越多,Web应用程序越来越脆弱,暴露于恶意攻击,这影响了基本属性,例如信息系统的机密性,完整性或可用性。要处理这些恶意威胁,Web应用程序开发人员和IT安全管理员使用Web应用程序漏洞扫描仪(WAV)作为定期审核Web应用程序以检查可利用漏洞的扫描工具。在今天的市场中,有大量的Web应用程序扫描工具可用。虽然市场上有这些工具,但问题是他们如何在Web应用程序中解决安全问题的效率。本文的主要焦点是评估11款扫描仪的有效性和性能,只要Web应用程序中的漏洞检测。这种评估是多功能的,因为它可以用于指定扫描仪的效率程度,提取关于他们能够检测漏洞的能力的结论,并通过制定公司或组织的建议来防止他人的建议。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号