security n. 1.安全(感);安稳;稳妥;平安。 2.确实;确信;把握;可靠性;安心。 3.【军事】防御物。 4.保护;防护;保卫;防御 (against; from); 治安,安全防卫。 5.【法律】保证,担保;抵押。 6.担保品;保证金;借用证 (for)。 7.担保人;保证人。 8.〔pl.〕证券;债券;公债;股票。 9.〔古语〕疏忽;大意。 public security 公安。 public security organs 保卫机关;公安机关。 What security can you offer for it 你对这件事能拿什么做担保呢? S- is the greatest enemy. 疏忽[麻痹大意]是最大的敌人。 give security against 保护;使无…之忧。 go [enter into, give] security for 做…的保人。 in security 安全。 in security for 作…的担保。 on good security 有可靠的抵押。
The c300 controller was introduced in 2005 and underwent successful cyber security testing at the british columbia institute of technology ( bcit ) the same year C300控制器在2005年推出,同年在英国哥伦比亚理工学院( bcit )成功地通过了网络安全性测试。
This article , the first in a series , will introduce the key concepts of software security , and then highlight some important considerations when it comes to software security testing 本文作为连载的第一部分,将首先介绍软件安全的几个重要概念,然后讨论软件安全测试的一些问题。
It is necessary that we can efficiently 、 exactly test and assess security of web application . therefore , that fully research web application security test and assessment technologies is significant 科学地、高效地、准确地测试评估web应用的安全性十分必要,是所有web应用系统所面临的重要课题。
In future columns , we ll tackle topics such as : how to perform a risk analysis , the importance of and difference between security testing and traditional functional testing , and how to think like a bad guy 该函数取两个自变量,第一个作为要规范化的字符串,第二个作为将存储结果的缓冲区。当然,需要确保结果缓冲区足够大,以处理任何大小的路径。
And in practice , the targeted of pertinence standards adopted to test this new product pressure electric cooker were not enough , especially their security test had considerable defects , which limited production and quality test of pressure electric cookers seriously 由于国家现行的相关标准在检测压力电饭锅的针对性不强,尤其是在安全性方面存在相当大的漏洞,给压力电饭锅产品的生产及检测带来一定的局限。
The paper discusses web application vulnerabilities , researches principles and key technologies of how to detect web application vulnerabilities , presents a new module that is a web application security test and assessment module based on data gathering 因此,对web应用安全测试评估技术展开全面的研究具有重要的理论意义和实用价值。本文在充分研究安全漏洞检测原理及关键技术的基础上,提出了一种基于数据采集的web应用安全测试评估模型。
Koal ca system , a independent developed ca certification system by shanghai koal software co . , ltd , passed system security authentication of the office of the state cipher administration , obtained sale license for security only of state public security ministry , and passed the testing evaluation and certification of china national information security testing evaluation and certification center 格尔ca系统是上海格尔软件股份有限公司自行研制开发的数字证书认证系统,通过了国家密码管理委员会办公室的系统安全性认证,获得国家公安部安全专用销售许可证,并通过国家信息安全测评认证中心的测评认证。
Web application traverse module can automatically 、 fully traverse web application and efficiently extract 、 gather web application protocol datum which can help to understand 、 grasp web application and detect all kinds of unknown vulnerabilities . web application security test and assessment module adds white - box test elements to black - box test . this module can improve pertinency 、 veracity 、 efficiency of vunlerabilty detection and can authentically simulate hacker ’ s attacks 安全测试评估模型中的基于数据采集的web应用遍历模型能够自动、完整、全面地遍历web整个应用,同时提取到web应用协议数据,这些协议数据能够帮助理解整个web应用,同时有助于发现web应用的未知漏洞。
The paper researches octave risk assess method which be applied to assess risk of web application system . finally , the paper designs and implements a web application security test and assessment prototype system . the system can scan and detect many kinds of web application vulnerabilites and can give a full , detailed report of web application vunlerabilites 通过反馈机制能够更好地优化漏洞规则库,使漏洞规则库更好地反映现实漏洞的变化规律;研究了octave风险评估方法,并应用于web应用系统安全的风险评估;最后详细地设计和实现了web应用安全测试评估原型系统,该系统能够扫描探测多种类型的web应用系统漏洞,特别是与具体web应用相关的漏洞;能够给出较为完整详细的web应用安全漏洞检测评估报告。
First , thehathor recalls historical approaches of information security briefly , and gives formal description of the nature and differen models of information security assurance . then a risk management based analyzing model has been proposed , upon which , afer discussions of the model are given from implemention ' s point of view including risk ana1yzing method of complexity theory proactive security contro1 mechanisms , as well as the method and practice of information security testing evaluation and certification methodology . the main innovative points of this dissertation include the fo11owings : 1 在对安全模型与安全性质形式化阐述的基础上,提出了基于风险管理的信息安全保障模型,在上述理论研究的基础上,论文的后半部分从实践的角度对基于风险管理的信息安全保障模型进行了进一步探讨,给出了反映信息本质特征的复杂性理论的风险分析方法,实时主动的安全控制机制,并结合信息安全测评认证的工作实际四川大学博士学位论文阐述了测评与效用分析的重要性,并给出了一系列测评方法与实践。