Carefully scanning and analysing web- applications is important, in order to avoid potential security vulnerabilities, or at least reduce them. Traditional code reviewing methods, such as manual code reviews, have various drawbacks when performed on large codebases. Therefore it is appropriate to explore automated code reviewing tools and study their performance and reliability. The literature study helped identify various prerequisites, which facilitated the application of automated code reviewing tools. In a case study, two static analysis tools, CodeQL and Semgrep, were used to find security risks in three open source web- applications with already known vulnerabilities. The result of the case study indicates that the automated code revi...
Developing high quality software is a challenging task and there are various techniques and processe...
Syftet med detta arbete är att undersöka om det är möjligt att kunna i realtid undersöka kod på en w...
Attacker och intrång på webbservrar är idag vanligt förekommande. Webben gör det lätt för hackare, k...
Bakgrund I dagens programvara finns det problem som försämrar kvaliteten hos system och ökar kostnad...
Having a proper method of defense against attacks is crucial for web applications to ensure the safe...
Web applications and APIs have become more popular every year, and security risks haveincreased. Alo...
Reading code is an essential skill to have for developers, as it is an effective way of finding bugs...
Web applications are a form of computer software running in the browser. They have many advantages, ...
Broken Access Control is the most serious web application security risk as published by Open Worldwi...
Software security has always been an afterthought in software development which results into insecur...
It is well-established that machine learning techniques have been used with great success in other d...
Traditionally, static code analysis tools alert developers on possible defects in the code. In recen...
Client-side web applications have recently gone from progressive enhancements to powering large scal...
In the present work we study behaviour of tools intended for code review and how they aim at elimina...
In this thesis security issues faced by modern web applications are studied. The goal is to find wa...
Developing high quality software is a challenging task and there are various techniques and processe...
Syftet med detta arbete är att undersöka om det är möjligt att kunna i realtid undersöka kod på en w...
Attacker och intrång på webbservrar är idag vanligt förekommande. Webben gör det lätt för hackare, k...
Bakgrund I dagens programvara finns det problem som försämrar kvaliteten hos system och ökar kostnad...
Having a proper method of defense against attacks is crucial for web applications to ensure the safe...
Web applications and APIs have become more popular every year, and security risks haveincreased. Alo...
Reading code is an essential skill to have for developers, as it is an effective way of finding bugs...
Web applications are a form of computer software running in the browser. They have many advantages, ...
Broken Access Control is the most serious web application security risk as published by Open Worldwi...
Software security has always been an afterthought in software development which results into insecur...
It is well-established that machine learning techniques have been used with great success in other d...
Traditionally, static code analysis tools alert developers on possible defects in the code. In recen...
Client-side web applications have recently gone from progressive enhancements to powering large scal...
In the present work we study behaviour of tools intended for code review and how they aim at elimina...
In this thesis security issues faced by modern web applications are studied. The goal is to find wa...
Developing high quality software is a challenging task and there are various techniques and processe...
Syftet med detta arbete är att undersöka om det är möjligt att kunna i realtid undersöka kod på en w...
Attacker och intrång på webbservrar är idag vanligt förekommande. Webben gör det lätt för hackare, k...