发明名称 SECURITY RISK SCORING OF AN APPLICATION
摘要 In one implementation, a system for risk scoring a software application includes a component score engine to calculate an impact component score and a likelihood component score for a security vulnerability during development of the software application based on a plurality of scored descriptions of security risk elements for the software application. In addition, the system includes a total risk score engine to calculate a total security risk score for the software product application on the impact component score and the likelihood component score for the security vulnerability of the software application. In addition, the system includes a risk characterization engine to assign a risk characterization to the software product based on where the total risk score falls within a predetermined scale.
申请公布号 WO2016018289(A1) 申请公布日期 2016.02.04
申请号 WO2014US48834 申请日期 2014.07.30
申请人 HEWLETT-PACKARD DEVELOPMENT COMPANY, L.P. 发明人 TOLEDANO, YANIV;GERSHONI, TOMER
分类号 G06F21/12;G06F17/00 主分类号 G06F21/12
代理机构 代理人
主权项
地址