2015
DOI: 10.1007/s10009-015-0365-2
|View full text |Cite
|
Sign up to set email alerts
|

A systematic classification of security regression testing approaches

Abstract: The openness of modern IT systems and their permanent change make it challenging to keep these systems secure. A combination of regression and security testing called security regression testing, which ensures that changes made to a system do not harm its security, are therefore of high significance and the interest in such approaches has steadily increased. In this article we present a systematic classification of available security regression testing approaches based on a solid study of background and relate… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1
1

Citation Types

0
23
0

Year Published

2015
2015
2022
2022

Publication Types

Select...
5
2

Relationship

3
4

Authors

Journals

citations
Cited by 35 publications
(23 citation statements)
references
References 59 publications
(77 reference statements)
0
23
0
Order By: Relevance
“…Risk assessment can be used to develop risk-based testing approaches [14], which can guide decisions during testing, and for instance help to select and prioritize security regression tests [13]. Baca et al [3] shows that using a risk analysis approach, it s possible to find more severe risks, besides, more advanced skills and a deeper awareness of the problems become available.…”
Section: Recommendations For Researchmentioning
confidence: 99%
“…Risk assessment can be used to develop risk-based testing approaches [14], which can guide decisions during testing, and for instance help to select and prioritize security regression tests [13]. Baca et al [3] shows that using a risk analysis approach, it s possible to find more severe risks, besides, more advanced skills and a deeper awareness of the problems become available.…”
Section: Recommendations For Researchmentioning
confidence: 99%
“…This makes it especially challenging to keep software systems permanently secure as changes either in the system itself or in its environment may cause new threats and vulnerabilities [37]. A combination of regression and security testing called security regression testing, which ensures that changes made to a system do not harm its security, are therefore of high significance and the interest in such approaches has steadily increased [36]. Regression testing techniques ensure that changes made to existing software do not cause unintended effects on unchanged parts and changed parts of the software behave as intended [82].…”
Section: Security Regression Testingmentioning
confidence: 99%
“…As for classical regression testing [139], also for security regression testing most approaches fall into this category [36]. These approaches test both, security mechanisms and vulnerabilities.…”
Section: Test Case Selectionmentioning
confidence: 99%
See 1 more Smart Citation
“…This technique ensure that changes made to a system do not harm its security, are therefore of high significance and the interest in such approaches has steadily increased [48]. The changes may be due to new business needs, new regulations, and new technologies.…”
Section: Can Not Directly Read Http Packets I S S Nmentioning
confidence: 99%