Skip to content

ivanchuchulski/highly-secure-software

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

28 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

Highly secure software modelling

This project aims to provide a software requirements and system design document with security up front. The document includes use case diagrams, abuse diagrams and misuse diagrams, idenitifiyng the system's assets, threats against them, possible exploitation vulnerabilities and countermeasure/mitigation suggestions.

Finally, a number of static analysis, dynamic testing and sample penetration tests were performed and documented against a working system, running on a physical instance. The static analysis included manual code inspection and tools analysis. Dynamic testing included ad-hoc system testing and the penetration tests consisted of sql injection attempts, port scanning and packet sniffing.

Diagrams

Use case diagram

Abuse diagram

Misuse diagram

Physical security architecture

Component/Service security architecture

About

No description, website, or topics provided.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors