在分析制造业面临的新挑战以及网络化制造特点的基础上 ,提出了基于 Web的异地协同设计制造系统的体系结构并开发了一个实际系统 e CWS (e- cooperative work system ) .详细介绍了该系统的功能和关键技术的实现 ,包括协同系统管理、协...在分析制造业面临的新挑战以及网络化制造特点的基础上 ,提出了基于 Web的异地协同设计制造系统的体系结构并开发了一个实际系统 e CWS (e- cooperative work system ) .详细介绍了该系统的功能和关键技术的实现 ,包括协同系统管理、协同工作管理、协同应用、约束管理和冲突消解、协同工具、安全控制、分布式产品数据管理等技术 .最后介绍了应用实例 .展开更多
To detect security vulnerabilities in a web application,the security analyst must choose the best performance Security Analysis Static Tool(SAST)in terms of discovering the greatest number of security vulnerabilities ...To detect security vulnerabilities in a web application,the security analyst must choose the best performance Security Analysis Static Tool(SAST)in terms of discovering the greatest number of security vulnerabilities as possible.To compare static analysis tools for web applications,an adapted benchmark to the vulnerability categories included in the known standard Open Web Application Security Project(OWASP)Top Ten project is required.The information of the security effectiveness of a commercial static analysis tool is not usually a publicly accessible research and the state of the art on static security tool analyzers shows that the different design and implementation of those tools has different effectiveness rates in terms of security performance.Given the significant cost of commercial tools,this paper studies the performance of seven static tools using a new methodology proposal and a new benchmark designed for vulnerability categories included in the known standard OWASP Top Ten project.Thus,the practitioners will have more precise information to select the best tool using a benchmark adapted to the last versions of OWASP Top Ten project.The results of this work have been obtaining using widely acceptable metrics to classify them according to three different degree of web application criticality.展开更多
文摘在分析制造业面临的新挑战以及网络化制造特点的基础上 ,提出了基于 Web的异地协同设计制造系统的体系结构并开发了一个实际系统 e CWS (e- cooperative work system ) .详细介绍了该系统的功能和关键技术的实现 ,包括协同系统管理、协同工作管理、协同应用、约束管理和冲突消解、协同工具、安全控制、分布式产品数据管理等技术 .最后介绍了应用实例 .
文摘To detect security vulnerabilities in a web application,the security analyst must choose the best performance Security Analysis Static Tool(SAST)in terms of discovering the greatest number of security vulnerabilities as possible.To compare static analysis tools for web applications,an adapted benchmark to the vulnerability categories included in the known standard Open Web Application Security Project(OWASP)Top Ten project is required.The information of the security effectiveness of a commercial static analysis tool is not usually a publicly accessible research and the state of the art on static security tool analyzers shows that the different design and implementation of those tools has different effectiveness rates in terms of security performance.Given the significant cost of commercial tools,this paper studies the performance of seven static tools using a new methodology proposal and a new benchmark designed for vulnerability categories included in the known standard OWASP Top Ten project.Thus,the practitioners will have more precise information to select the best tool using a benchmark adapted to the last versions of OWASP Top Ten project.The results of this work have been obtaining using widely acceptable metrics to classify them according to three different degree of web application criticality.