Towards an Evaluation Framework for SOA Security Testing Tools

被引:7
作者
Kabbani, Nawwar [1 ]
Tilley, Scott [1 ]
Pearson, Lewis [2 ]
机构
[1] Florida Inst Technol, Dept Comp Sci, Melbourne, FL 32901 USA
[2] Harris Corp, Govt Commun Syst, Melbourne, FL 32919 USA
来源
2010 IEEE INTERNATIONAL SYSTEMS CONFERENCE | 2010年
关键词
software testing; Service; Oriented Architecture (SOA); Web services; security; tools; evaluation;
D O I
10.1109/SYSTEMS.2010.5482322
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Service-Oriented Architecture (SOA) is a paradigm that organizes and uses distributed capabilities to bring together a technical solution to a business problem. Despite the large and increasing dependency on SOA by the enterprise, testing SOA systems is still a nascent and immature field. In particular, testing SOA applications from a security perspective is an essential yet underserved activity. This paper presents preliminary work towards an evaluation framework for SOA security testing tools, in order to address the question "Which testing tool(s) provide(s) the best value in testing SOA security with respect to our needs and context?"
引用
收藏
页码:438 / 443
页数:6
相关论文
共 50 条
[21]   Towards a Framework for Assuring Cyber Physical System Security [J].
Lu, Tianbo ;
Zhao, Jinyang ;
Zhao, Ling Ling ;
Li, Yang ;
Zhang, Xiaoyan .
INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2015, 9 (03) :25-40
[22]   Towards a Model-driven based Security Framework [J].
Abdallah, Rouwaida ;
Yakymets, Nataliya ;
Lanusse, Agnes .
MODELSWARD 2015 PROCEEDINGS OF THE 3RD INTERNATIONAL CONFERENCE ON MODEL-DRIVEN ENGINEERING AND SOFTWARE DEVELOPMENT, 2015, :639-645
[23]   Security testing framework for a novel mobile wallet ecosystem [J].
Santos, Joao ;
Antunes, Marco ;
Mangana, Joao ;
Monteiro, David ;
Santos, Patrick ;
Casal, Joao .
2017 9TH INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND COMMUNICATION NETWORKS (CICN), 2017, :153-160
[24]   An Evaluation of Test Coverage Tools in Software Testing [J].
Shahid, Muhammad ;
Ibrahim, Suhaimi .
COMPUTER COMMUNICATION AND MANAGEMENT, 2011, 5 :216-222
[25]   An evaluation of commonly used Kubernetes security scanning tools [J].
Kapetanidou, Ioanna Angeliki ;
Nizamis, Alexandros ;
Votis, Konstantinos .
PROCEEDINGS OF THE 2ND INTERNATIONAL WORKSHOP ON METAOS FOR THE CLOUD-EDGE-IOT CONTINUUM, MECC 2025, 2025, :20-25
[26]   Seamless integration of dependability and security concepts in SOA: A feedback control system based framework and taxonomy [J].
Hu, J. ;
Khalil, I. ;
Han, S. ;
Mahmood, A. .
JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2011, 34 (04) :1150-1159
[27]   Testing and evaluation framework for virtualization technologies [J].
Kao, Chia Hung .
COMPUTING, 2017, 99 (07) :657-677
[28]   Testing and evaluation framework for virtualization technologies [J].
Chia Hung Kao .
Computing, 2017, 99 :657-677
[29]   FuzzDocs: An Automated Security Evaluation Framework for IoT [J].
You, Myoungsung ;
Kim, Yeonkeun ;
Kim, Jaehan ;
Seo, Minjae ;
Son, Sooel ;
Shin, Seungwon ;
Lee, Seungsoo .
IEEE ACCESS, 2022, 10 :102406-102420
[30]   Applying SOA to an E-commerce System and Designing a Logical Security Framework for Small and Medium Sized E-commerce based on SOA [J].
Luhach, Ashish Kr. ;
Dwivedi, Sanjay Kr. ;
Jha, Chandra. Kr. .
2014 IEEE INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND COMPUTING RESEARCH (IEEE ICCIC), 2014, :341-346