Yazilim güvenlik testi: Bir sistematik literatür Haritalamasi

Translated title of the contribution: Software security testing: A systematic literature mapping

Burcu Yalçiner, Sena Sönmez Çiçek, Esra Sahin, Vahid Garousi

Research output: Chapter in Book/Report/Conference proceedingConference contribution

410 Downloads (Pure)

Abstract

Security testing of software systems such as mobile applications, web applications, computer applications and server applications has become an essential activity. As the area of software security testing (SST) has matured and the number of studies has increased, systematically categorizing the current state-of-The-Art is important. In this paper, we classify the established knowledge in this area through a systematic mapping study. In the scope of the study, three sets of mapping questions are posed, research keywords are selected, inclusion and exclusion criteria is defined, a classification schema is developed and refined systematically, and the selected primary studies are mapped according to this schema. Our final pool of papers consists of 67 papers. As our work is in progress, 65%-%70 of our final pool of papers has been analyzed. Some of the results of analysis are the following: (1) In the software security testing area, the types of contribution presented in primary studies vary and the top two leading facets are methods/techniques presented in 35 papers and tool presented in 13 papers; and (2) By investigating types of research methods used in papers, we observed that validation research used by 25 papers is the most preferred method among researchers.

Translated title of the contributionSoftware security testing: A systematic literature mapping
Original languageTurkish
Title of host publicationUlusal Yazılım Mühendisliği Sempozyumu
Pages141-151
Number of pages11
Volume1721
Publication statusPublished - 26 Oct 2016
Event10th Turkish National Software Engineering Symposium, UYMS 2016 - Canakkale, Turkey
Duration: 24 Oct 201626 Oct 2016

Publication series

NameCEUR Workshop Proceedings
PublisherCEUR-WS
ISSN (Print)1613-0073

Conference

Conference10th Turkish National Software Engineering Symposium, UYMS 2016
Country/TerritoryTurkey
CityCanakkale
Period24/10/201626/10/2016

Keywords

  • Software security assessment
  • Software security testing
  • Software testing

ASJC Scopus subject areas

  • General Computer Science

Fingerprint

Dive into the research topics of 'Software security testing: A systematic literature mapping'. Together they form a unique fingerprint.

Cite this