摘要
通信技术和计算机技术的发展使得计算机软件变得庞大复杂。计算机软件的弱点也日趋隐蔽。目前对软件安全的研究主要是设法编写安全的软件和如何去检测并消除软件中的弱点。本文主要从动态检测技术和静态检测技术两方面对现有的软件漏洞检测方法进行研究总结。
The development of communication technology and computer technology makes computer software become large and complex. Computer sottware vulnerabilities are becoming more and more subtle. The current research on sottware security is main- ly managed to write secure soft-ware and to detect and eliminate sol, ware vulnerabilities. This paper mainly summarizes the existing sotlware vulnerability detection method from two aspects: the dynamic detection technolo and static testin technology.
出处
《电脑与电信》
2013年第4期51-52,57,共3页
Computer & Telecommunication
关键词
漏洞检测
动态检测
静态检测
状态机
漏报
误报
leak detection: dynamic testing
static testing
state machine: missing report: false positives