Emulation of Software Faults: A Field Data Study and a Practical Approach
- J. Durães, H. Madeira
- Computer ScienceIEEE Transactions on Software Engineering
- 1 November 2006
A new software fault injection technique (G-SWFIT) based on emulation operators derived from the field study is proposed that consists of finding key programming structures at the machine code-level where high-level software faults can be emulated.
Xception: A Technique for the Experimental Evaluation of Dependability in Modern Computers
- J. Carreira, H. Madeira, J. G. Silva
- Computer ScienceIEEE Trans. Software Eng.
- 1 February 1998
Experimental, results are presented to demonstrate the accuracy and potential of Xception in the evaluation of the dependability properties of the complex computer systems available nowadays.
On Fault Representativeness of Software Fault Injection
- R. Natella, Domenico Cotroneo, J. Durães, H. Madeira
- Computer ScienceIEEE Transactions on Software Engineering
- 2013
An extensive experimental study to evaluate the representativeness of faults injected by a state-of-the-art approach (G-SWFIT) shows that a significant share of injected faults cannot be considered representative of residual software faults as they are consistently detected by regression tests.
Xception: Software Fault Injection and Monitoring in Processor Functional Units1
- J. Carreira, H. Madeira, J. Gabriel
- Engineering
- 1995
In the preferred embodiment, the cycloconverter is used to impress a signaling voltage waveform upon the voltages of the three phases of an electric power distribution feeder.
Assessing Dependability with Software Fault Injection
- R. Natella, Domenico Cotroneo, H. Madeira
- Computer ScienceACM Computing Surveys
- 8 February 2016
This survey provides a comprehensive overview of the state of the art on Software Fault Injection to support researchers and practitioners in the selection of the approach that best fits their dependability assessment goals.
Testing and Comparing Web Vulnerability Scanning Tools for SQL Injection and XSS Attacks
- J. Fonseca, M. Vieira, H. Madeira
- Computer SciencePacific Rim International Symposium on Dependable…
- 17 December 2007
A method to evaluate and benchmark automatic web vulnerability scanners using software fault injection techniques, where the most common types of software faults are injected in the web application code which is then checked by the scanners.
Using web security scanners to detect vulnerabilities in web services
- M. Vieira, Nuno Antunes, H. Madeira
- Computer ScienceIEEE/IFIP International Conference on Dependable…
- 29 September 2009
An experimental evaluation of security vulnerabilities in 300 publicly available web services and the differences in the vulnerabilities detected and the high number of false-positives observed highlight the limitations of web vulnerability scanners on detectingSecurity vulnerabilities in web services.
A Dependability Benchmark for OLTP Application Environments
- M. Vieira, H. Madeira
- Computer ScienceVery Large Data Bases Conference
- 9 September 2003
Software Aging and Rejuvenation in a SOAP-based Server
- L. Silva, H. Madeira, J. G. Silva
- Computer ScienceIEEE International Symposium on Network Computing…
- 24 July 2006
A new SLA-oriented software rejuvenation technique is proposed that proved to be a simple way to increase the dependability of the SOAP-server, the degree of self-healing and to maintain a sustained level of performance in the applications.
Effective Detection of SQL/XPath Injection Vulnerabilities in Web Services
- Nuno Antunes, N. Laranjeiro, M. Vieira, H. Madeira
- Computer ScienceIEEE International Conference on Services…
- 21 September 2009
Experimental evaluation shows that the proposed new automatic approach for the detection of SQL Injection and XPath Injection vulnerabilities performs much better than known tools, achieving extremely high detection coverage while maintaining the false positives rate very low.
...
...