Vis enkel innførsel

dc.contributor.advisorSkramstad, Torbjørnnb_NO
dc.contributor.advisorØie, Gunnar Renénb_NO
dc.contributor.authorBallester Lafuente, Carlosnb_NO
dc.date.accessioned2014-12-19T13:33:32Z
dc.date.available2014-12-19T13:33:32Z
dc.date.created2010-09-04nb_NO
dc.date.issued2007nb_NO
dc.identifier348445nb_NO
dc.identifierntnudaim:3690nb_NO
dc.identifier.urihttp://hdl.handle.net/11250/251154
dc.description.abstractIntroduction The aim of this Master Thesis is to develop a software security guideline that will be used for evaluating methods and measuring security in open source projects with a high security implication such as healthcare applications for example, where the privacy and security is a crucial factor. Background Theory First section of thesis is focused on presenting the appropriate background theory that will be needed for a good understanding of the rest of the thesis, like vulnerabilities, common security attacks, definition of the client-server technology, risk analysis and specific theory about Indivo and the healthcare field. Methods The method chosen to develop the guideline was the waterfall model as time was quite limited and only one iteration could be done. That s why no other methods like the spiral model were used, as they require several iterations until achieving functionality. Results After applying the guideline, several vulnerabilities were found, like session hijacking or capturing login information on real time. The guideline proved to be useful in revealing serious security issues that should be fixed, and into describing the purpose and the logic of decisions made in early stages like organizational or design stage. Conclusion Both the development of the Security Guideline and the posterior testing of the guideline were considered successful, as a working methodology was established and several security issues were revealed in Indivo.nb_NO
dc.languageengnb_NO
dc.publisherInstitutt for datateknikk og informasjonsvitenskapnb_NO
dc.subjectntnudaimno_NO
dc.subjectSIF2 datateknikkno_NO
dc.subjectProgram- og informasjonssystemerno_NO
dc.titleEvaluating Security in Open Source Consumer Applicationsnb_NO
dc.typeMaster thesisnb_NO
dc.source.pagenumber99nb_NO
dc.contributor.departmentNorges teknisk-naturvitenskapelige universitet, Fakultet for informasjonsteknologi, matematikk og elektroteknikk, Institutt for datateknikk og informasjonsvitenskapnb_NO


Tilhørende fil(er)

Thumbnail
Thumbnail

Denne innførselen finnes i følgende samling(er)

Vis enkel innførsel