See this document in CiteSeerX!

An Approach for Analyzing the Robustness of Windows NT Software (1998)  (Make Corrections)  (1 citation)
Anup K. Ghosh, Viren Shah, Matt Schmid
Proc. 21st NIST-NCSC National Information Systems Security Conference



  Home/Search   Context   Related

 
View or download:
rstcorp.com/pub/papers/riddle.ps
Cached:  PS.gz  PS  PDF   Image  Update  Help

From:  rstcorp.com/papers/chrono1998 (more)
Homepages:  A.Ghosh  

Rate this article: (best)
  Comment on this article  
(Enter summary)

Abstract: Today, the vast majority of software executing on defense systems is untrusted commercial off-the-shelf software such as Microsoft Windows software. Vulnerabilities in this software may be exploited to gain unauthorized access to security-critical systems. A number of studies have analyzed the robustness of software that run on Unix systems. The results of these studies have pointed to vulnerabilities in the software that could be potentially exploited into security intrusions. This paper... (Update)

Context of citations to this paper:   More

...of test cases. Two papers have been published by Ghosh et al. on random black box testing of applications running on Windows NT[5,6]. These studies are extensions of our earlier 1990 and 1995 Fuzz studies[8,9] In the NT studies, the authors tested several standard...

Cited by:   More
An Empirical Study of the Robustness of Windows NT.. - Forrester, Miller (2000)   (Correct)

Similar documents (at the sentence level):
7.1%:   Testing the Robustness of Windows NT Software - Ghosh, Schmid, Shah (1998)   (Correct)

Active bibliography (related documents):   More   All
0.5:   Towards Analyzing Security-Critical Software During.. - Ghosh, McGraw, Charron.. (1996)   (Correct)
0.5:   An Approach for Certifying Security in Software Components - Ghosh, McGraw   (Correct)
0.1:   A Methodology for Testing Intrusion Detection Systems - Puketza, Zhang, Chung.. (1996)   (Correct)

Similar documents based on text:   More   All
0.5:   ITS4: A Static Vulnerability Scanner for C and C++ Code - Viega, Bloch, Kohno, McGraw (2000)   (Correct)
0.4:   Wrapping Windows NT Binary Executables for Failure Simulation - Ghosh, Schmid (1998)   (Correct)
0.4:   Detecting Anomalous and Unknown Intrusions Against Programs - Ghosh, Wanken, Charron (1998)   (Correct)

BibTeX entry:   (Update)

A. Ghosh, V. Shah, and M. Schmid, "An Approach for Analyzing the Robustness of Windows NT Software", 21st National Information Systems Security Conference, Crystal City, VA, October 1998. http://citeseer.ist.psu.edu/ghosh98approach.html   More

@inproceedings{ ghosh98approach,
    author = "A. K. Ghosh and V. Shah and M. Schmid",
    title = "An Approach for Analyzing the Robustness of Windows {NT} Software",
    booktitle = "Proc. 21st {NIST}-{NCSC} National Information Systems Security Conference",
    pages = "383--391",
    year = "1998",
    url = "citeseer.ist.psu.edu/ghosh98approach.html" }
Citations (may not include all citations):
49   An empirical study of the reliability of unix utilities - Miller, Fredrikson et al. - 1990
46   The cops security checker system - Farmer, Spafford - 1990  DBLP
23   Comparing operating systems using robustness benchmarks - Koopman, Sung et al.
20   Improving the security of your site by breaking into it (context) - Farmer, Venema - 1993
11   Fuzz revisted: A re-examination of the reliability of unix u.. (context) - Miller, Koski et al. - 1995
10   The TAMU security package: An ongoing response to Internet i.. - Safford, Schales et al. - 1993
3   Available by ftp from ftp://ftp (context) - Klaus, scanner - 1995
1   Domestic law enforcement and electronic civil defense (context) - Freeh - 1996
1   Air force thinks push-pull technology too risky (context) - Editors - 1998
1   A commander-in-chief's view of rear-area (context) - John, Sheehan - 1996

Documents on the same site (http://rstcorp.com/papers/chrono-1998.html):   More
COTS Software Failures: Can Anything be Done? - Voas, Payne   (Correct)
Agent Trustworthiness - Kassab, Voas (1998)   (Correct)
Automated Software Test Data Generation for Complex Programs - Michael, McGraw (1998)   (Correct)

Online articles have much greater impact   More about CiteSeer.IST   Add search form to your site   Submit documents   Feedback  

CiteSeer.IST - Copyright Penn State and NEC