Static Analysis for Security

  • Authors:
  • Brian Chess;Gary McGraw

  • Affiliations:
  • Fortify Software;Cigital

  • Venue:
  • IEEE Security and Privacy
  • Year:
  • 2004

Quantified Score

Hi-index 0.00

Visualization

Abstract

All software projects are guaranteed to have one artifact in common: source code. Together with architectural risk analysis, code review for security ranks very high on the list of software security best practices. Here, we'll look at how to automate source-code security analysis with static analysis tools.