The objective of this research is to:
- Gauge security awareness amongst developers.
- Gather requirements for a tool that will parse through the code-base of an application and identify areas in the code with a potential vulnerability with respect to the CWE top 25 errors.
In order to perform this research, we made use of the Grounded Theory Analysis [REF] to gauge the awareness of security principles amongst developers in the industry and to analyze a set of common requirements which the developers and analysts need and expect out of the tool mentioned in item 2.
No comments:
Post a Comment