Sökning: "säkerhetstestning"

Visar resultat 1 - 5 av 15 uppsatser innehållade ordet säkerhetstestning.

  1. 1. Context-aware security testing of Android applications : Detecting exploitable vulnerabilities through Android model-based security testing

    Master-uppsats, KTH/Skolan för elektroteknik och datavetenskap (EECS)

    Författare :Ivan Baheux; [2023]
    Nyckelord :Android Application Security; Vulnerability Detection; Context-Awareness; Model-Based Security Testing; Domain Specific Language; Sécurité des Applications Android; Détection de Vulnérabilités; Sensibilité au Contexte; Tests de Sécurité Basés sur les Modèles; Langage Dédiés; Android-applikationssäkerhet; Upptäckt av sårbarheter; Kontextmedvetenhet; Modellbaserad säkerhetstestning; Domänspecifikt språk;

    Sammanfattning : This master’s thesis explores ways to uncover and exploit vulnerabilities in Android applications by introducing a novel approach to security testing. The research question focuses on discovering an effective method for detecting vulnerabilities related to the context of an application. LÄS MER

  2. 2. KARTAL: Web Application Vulnerability Hunting Using Large Language Models : Novel method for detecting logical vulnerabilities in web applications with finetuned Large Language Models

    Master-uppsats, KTH/Skolan för elektroteknik och datavetenskap (EECS)

    Författare :Sinan Sakaoglu; [2023]
    Nyckelord :Broken Access Control; Vulnerability; Large Language Models; Web Application; API; Detection; Scanner; DAST; Application Security; Brutet åtkomstkontroll; Sårbarhet; Stora språkmodeller; Webbapplikation; API; Upptäckt; Skanner; DAST; Applikationssäkerhet;

    Sammanfattning : Broken Access Control is the most serious web application security risk as published by Open Worldwide Application Security Project (OWASP). This category has highly complex vulnerabilities such as Broken Object Level Authorization (BOLA) and Exposure of Sensitive Information. LÄS MER

  3. 3. A Purple Team Approach to Attack Automation in the Cloud Native Environment

    Master-uppsats, KTH/Skolan för elektroteknik och datavetenskap (EECS)

    Författare :Svitlana Chaplinska; [2022]
    Nyckelord :Automation; cloud native; security; threat; Automation; molnbaserat; säkerhet; hot;

    Sammanfattning : The threat landscape is changing with the increased popularity of cloud native systems. Adversaries are adopting new ways to attack systems. Therefore, security specialists have to adopt new approaches to their security practices. This thesis explores a purple team approach to attack automation in a cloud native environment. LÄS MER

  4. 4. Finding vulnerabilities in connected devices

    Kandidat-uppsats, KTH/Skolan för elektroteknik och datavetenskap (EECS)

    Författare :Matilda Qvick; Saga Harnesk; [2022]
    Nyckelord :Penetration Testing; Threat Modelling; Connected Devices; Vulnerabilities; Hardware Security; Penetrationstestning; Hotmodellering; Uppkopplade Enheter; Sårbarheter; Hårdvarusäkerhet;

    Sammanfattning : This thesis covers the security testing of a system with connected devices. In a world with an ever-growing number of connected devices, it is crucial to be mindful of the consequences unprotected systems can cause. The thesis aim to shine light on the issues of not having sufficient security measures in place. LÄS MER

  5. 5. Riskbaserad säkerhetstestning : En fallstudie om riskbaserad säkerhetstestning i utvecklingsprojekt

    Kandidat-uppsats, Högskolan Dalarna/Mikrodataanalys

    Författare :Pontus Engblom; [2020]
    Nyckelord :Security testing; testing; risk-based security testing; risks; risk evaluation; risk management; system development; Säkerhetstest; testning; riskbaserad säkerhetstestning; risker; riskvärdering; riskhantering; systemutveckling;

    Sammanfattning : A risk is something that can happen and a problem is something that we know will happen or that has already happened. Security testing is used to evaluate a programs security using various methods and risk-based security testing is used to analyze, calculate and correct potential defects or problems in a system. LÄS MER