A fault injection model-oriented testing strategy for component security
来源期刊:中南大学学报(英文版)2009年第2期
论文作者:陈锦富 卢炎生 张卫 谢晓东
文章页码:258 - 264
Key words:component testing; component security; fault injection model; testing strategy; detecting algorithm
Abstract: A fault injection model-oriented testing strategy was proposed for detecting component vulnerabilities. A fault injection model was defined, and the faults were injected into the tested component based on the fault injection model to trigger security exceptions. The testing process could be recorded by the monitoring mechanism of the strategy, and the monitoring information was written into the security log. The component vulnerabilities could be detected by the detecting algorithm through analyzing the security log. Lastly, some experiments were done in an integration testing platform to verify the applicability of the strategy. The experimental results show that the strategy is effective and operable. The detecting rate is more than 90% for vulnerability components.
基金信息:the National Pre-Research Project Foundation of China