Juan R. Bermejo Higuera1, *, Javier Bermejo Higuera1, Juan A. Sicilia Montalvo1, Javier Cubo Villalba1, Juan José Nombela Pérez1
CMC-Computers, Materials & Continua, Vol.64, No.3, pp. 1555-1577, 2020, DOI:10.32604/cmc.2020.010885
- 30 June 2020
Abstract To detect security vulnerabilities in a web application, the security analyst
must choose the best performance Security Analysis Static Tool (SAST) in terms of
discovering the greatest number of security vulnerabilities as possible. To compare static
analysis tools for web applications, an adapted benchmark to the vulnerability categories
included in the known standard Open Web Application Security Project (OWASP) Top
Ten project is required. The information of the security effectiveness of a commercial
static analysis tool is not usually a publicly accessible research and the state of the art on
static security tool analyzers shows… More >