User: Guest  Login
Title:

Better Safe Than Sorry! Automated Identification of Functionality-Breaking Security-Configuration Rules

Document type:
Konferenzbeitrag
Contribution type:
Textbeitrag / Aufsatz
Author(s):
Stöckle, Patrick; Sammereier, Michael; Grobauer, Bernd; Pretschner, Alexander
Pages contribution:
10
Abstract:
Insecure default values in software settings can be exploited by attackers to compromise the system that runs the software. As a countermeasure, there exist security-configuration guides specifying in detail which values are secure. However, most administrators still refrain from hardening existing systems because the system functionality is feared to deteriorate if secure settings are applied. To foster the application of security-configuration guides, it is necessary to identify those rules...     »
Keywords:
Software Security, Configuration Management, Software Testing
Book / Congress title:
ACM/IEEE International Conference on Automation of Software Test (AST)
Date of congress:
15.-16.05.2023
Year:
2023
Bookseries title:
AST '23
Reviewed:
ja
Language:
en
Publication format:
WWW
WWW:
Preprint on Arxiv
 BibTeX