Latest Additions to the Library
Standards-Based Automated Remediation: A Remediation Manager Reference Implementation, 2011 Update
This report describes the Software Engineering Institute’s (SEI’s) 2011 work for the National Security Agency (NSA) to develop standards for automated remediation of vulnerabilities and compliance issues on Department of...
Standards-Based Automated Remediation: A Remediation Manager Reference Implementation
This report describes the Software Engineering Institute's 2010 work to develop standards for vulnerability and compliance remediation on Department of Defense networked systems.
Network Monitoring for Web-Based Threats
This report provides detection and prevention methods to counter an approach that a focused attacker would need to take in order to breach an organization through web-based protocols.
COVERT: A Framework for Finding Buffer Overflows in C Programs via Software Verification
This report presents COVERT, an automated framework aimed at finding buffer overflows in C programs using state-of-the-art software verification tools and techniques.
Keynote presentation by Donald Firesmith at SESS’10, as part of the 32nd ACM/IEEE International Conference on Software Engineering (ISCE’2010) in Cape Town, South Africa.