Powered by OpenAIRE graph

SMARTESTING

Country: France
4 Projects, page 1 of 1
  • Funder: French National Research Agency (ANR) Project Code: ANR-11-ASTR-0002
    Funder Contribution: 285,312 EUR

    Either in defense or civil domains, the awareness about security issues of information or communication systems is increasing. The vulnerabilities or malicious attacks can have dramatic results. The security of information or communication systems should be achieved at several levels: • Processes and organizations to establish the security based on risk analysis and to define security policy; • Physical infrastructure, securing their access or their sealing; • Software components provide security features on all layers of the information system. The OSEP project addresses clearly the third point (in software). The OSEP project will provide innovative technology for testing the correct implementation of the properties expected for safety. A recent study by the Software Engineering Institute (SEI) of Carnegie Mellon University (cf http://www.sei.cmu.edu/tsp/research/) has shown on a representative sample of information systems that 90% of security incidents were caused by attacks on software fault. A key challenge for a good management of the security policy resides in the ability to identify reliable security features, and to ensure their proper implementation. The security policy is implemented through security components, such as cryptographic components, smart cards, authentication components, firewalls or filtering devices. These security features are present in a multitude of systems for both civil and defense fields. The strategic objective of OSEP project aims to strengthen security through innovative techniques. These techniques use test generation driven by models for testing features and safety components. The expected results will lead to both a management of off-line test generation from schemas for security properties and complementary techniques for in-line generation and test execution. These technologies are based on complex research issues, both in terms of test coverage associated with the security properties, in test generation algorithmic and in the management of the generation and execution for online testing. The level of technological maturity of the research project, classified on the scale of the TRL (Technology Readiness Level) is at level 2 and 3 for the part concerning the safety test online from templates, at level 3 and 4 for the test generation part driven by the security properties from schemas. The OSEP project is a research project that combines an innovative SME, Smartesting technology, specialist in tests generation from model and an INRIA team, the project team CASSIS - Combining Approaches For the Security of Infinite State Systems - specializing in the field of verification and security. The search results will be tested in two contexts: security components and software radio, in partnership with the Department “Analyse et Développement de Logiciels de Sécurité” of DGA Maîtrise de l’information.

    more_vert
  • Funder: French National Research Agency (ANR) Project Code: ANR-05-RNTL-0010
    Funder Contribution: 899,471 EUR
    more_vert
  • Funder: French National Research Agency (ANR) Project Code: ANR-05-RNRT-0013
    Funder Contribution: 1,013,510 EUR
    more_vert
  • Funder: French National Research Agency (ANR) Project Code: ANR-09-SEGI-0014
    Funder Contribution: 1,020,330 EUR
    more_vert

Do the share buttons not appear? Please make sure, any blocking addon is disabled, and then reload the page.

Content report
No reports available
Funder report
No option selected
arrow_drop_down

Do you wish to download a CSV file? Note that this process may take a while.

There was an error in csv downloading. Please try again later.