发明名称 |
SECURITY RISK SCORING OF AN APPLICATION |
摘要 |
In one implementation, a system for risk scoring a software application includes a component score engine to calculate an impact component score and a likelihood component score for a security vulnerability during development of the software application based on a plurality of scored descriptions of security risk elements for the software application. In addition, the system includes a total risk score engine to calculate a total security risk score for the software product application on the impact component score and the likelihood component score for the security vulnerability of the software application. In addition, the system includes a risk characterization engine to assign a risk characterization to the software product based on where the total risk score falls within a predetermined scale. |
申请公布号 |
WO2016018289(A1) |
申请公布日期 |
2016.02.04 |
申请号 |
WO2014US48834 |
申请日期 |
2014.07.30 |
申请人 |
HEWLETT-PACKARD DEVELOPMENT COMPANY, L.P. |
发明人 |
TOLEDANO, YANIV;GERSHONI, TOMER |
分类号 |
G06F21/12;G06F17/00 |
主分类号 |
G06F21/12 |
代理机构 |
|
代理人 |
|
主权项 |
|
地址 |
|