Title :
Improving software reliability and security with automated analysis
Author_Institution :
GrammaTechInc., Ithaca, NY
Abstract :
Static-analysis tools that identify defects and security vulnerabilities in source and executables have advanced significantly over the last few years. A brief description of how these tools work is given. Their strengths and weaknesses in terms of the kinds of flaws they can and cannot detect are discussed. Methods for quantifying the accuracy of the analysis are described, including sources of ambiguity for such metrics. Recommendations for deployment of tools in a production setting are given.
Keywords :
program diagnostics; security of data; software metrics; software reliability; software tools; software defect identification; software metrics; software reliability improvement; software security; static-analysis tool; Best practices; Computer bugs; Data analysis; Performance analysis; Production systems; Security; Software reliability; Software systems; Software tools; Testing;
Conference_Titel :
Military Communications Conference, 2008. MILCOM 2008. IEEE
Conference_Location :
San Diego, CA
Print_ISBN :
978-1-4244-2676-8
Electronic_ISBN :
978-1-4244-2677-5
DOI :
10.1109/MILCOM.2008.4753207