Security Vulnerability Detection Study Based on Static Analysis

XIA Yi-Min,LUO Jun,ZHANG Min-Xuan
DOI: https://doi.org/10.3969/j.issn.1002-137X.2006.10.074
2006-01-01
Computer Science
Abstract:Security vulnerability of software is a serious threat for information security. Static analysis can find security vulnerabilities by automatically deriving information about the behavior of software. Comparing with other program analysis methods, static analysis method can detect security vulnerabilities automatically and effectively. This paper presents the theory basis and principles of static analysis methods, and introduces their applications and characters in security vulnerabilities detection. At last, we show some security languages which can support detection of security vulnerability.
What problem does this paper attempt to address?