Personal tools
You are here: Home Projects Project 305.ucb - Programs/Software Security Evaluation Systems
« August 2008 »
Su Mo Tu We Th Fr Sa
1 2
3 4 5 6 7 8 9
10 11 12 13 14 15 16
17 18 19 20 21 22 23
24 25 26 27 28 29 30
31
 

Project 305-UCB (1st year)

Programs/Software Security Evaluation Systems - UCB

Security remains a major roadblock to universal acceptance of the Web and Web 2.0 for many kinds of transactions, especially since the recent sharp increase in remotely exploitable vulnerabilities has been attributed to design flaws and insecure coding practices by Web developers. Existing solutions include following secure coding practices as described in the Web security literature, placing intrusion detection modules into application and/or Web servers, deploying network-based application firewalls, exercising automatic/manual penetration tests, and conducting manual code reviews. In this project, we're focus on studying the trend of web security and static analysis techniques to identify Web application vulnerabilities early in the software development life cycle (SDLC).

Member List

Country Organization Full Name Title E-mail
Taiwan
TWISC
Chuang, Tyng-Ruey
PI
Taiwan
IIS, Academia SINICA
D. T. Lee
Co-PI
Taiwan
TWISC
Wang, Bow-Yaw
Co-PI
Taiwan
TWISC
Tsay, Yih-Kuen
Co-PI
Taiwan
TWISC
Tsai, Chung-Hung
Assistant
US
UCB
George.Necula
Professor

Required documents (1st year)

Statement of Work

White Paper

Self-Assessment Presentation File (Internal Review Meeting)

Midterm Report (External Review Meeting)

Final Report (External Review Meeting)

Prototypes & Systems

Publications

Others

Travel Reports

Other Documents

Other Private Documents (for project members only)

External Links