%0 Journal Article %T Security Vulnerability Detection Study Based on Static Analysis
基于静态分析的安全漏洞检测技术研究 %A XIA Yi-Min %A LUO Jun %A ZHANG Min-Xuan %A
夏一民 %A 罗军 %A 张民选 %J 计算机科学 %D 2006 %I %X Security vulnerability of software is a serious threat for information security. Static analysis can find security vulnerabilities by automatically deriving information about the behavior of software. Comparing with other program analysis methods, static analysis method can detect security vulnerabilities automatically and effectively. This paper presents the theory basis and principles of static analysis methods, and introduces their applications and characters in security vulnerabilities detection. At last, we show some security languages which can support detection of security vulnerability. %K Security vulnerability %K Static analysis %K Abstract interpretation %K Type inference %K Dataflow analysis %K Constraint analysis %K Information security
安全漏洞 %K 静态分析 %K 抽象解释 %K 类型推断 %K 数据流分析 %K 约束分析 %K 信息安全 %U http://www.alljournals.cn/get_abstract_url.aspx?pcid=5B3AB970F71A803DEACDC0559115BFCF0A068CD97DD29835&cid=8240383F08CE46C8B05036380D75B607&jid=64A12D73428C8B8DBFB978D04DFEB3C1&aid=EF9171E09D009BD8&yid=37904DC365DD7266&vid=27746BCEEE58E9DC&iid=F3090AE9B60B7ED1&sid=69E4C201C13601F9&eid=4133DDB79B497495&journal_id=1002-137X&journal_name=计算机科学&referenced_num=9&reference_num=22