Title | Towards Visual Analytics Dashboards for Provenance-driven Static Application Security Testing |
Publication Type | Conference Paper |
Year of Publication | 2021 |
Authors | Schreiber, Andreas, Sonnekalb, Tim, Kurnatowski, Lynn von |
Conference Name | 2021 IEEE Symposium on Visualization for Cyber Security (VizSec) |
Keywords | application security, codes, composability, Computer crime, Human Behavior, human-centered computing, Metrics, Provenance, pubcrawl, Resiliency, security, Security and Privacy, Software and Application Security, software security engineering, Testing, Tools, visual analytics, visualization, Visualization application domains |
Abstract | The use of static code analysis tools for security audits can be time consuming, as the many existing tools focus on different aspects and therefore development teams often use several of these tools to keep code quality high and prevent security issues. Displaying the results of multiple tools, such as code smells and security warnings, in a unified interface can help developers get a better overview and prioritize upcoming work. We present visualizations and a dashboard that interactively display results from static code analysis for "interesting" commits during development. With this, we aim to provide an effective visual analytics tool for code security analysis results. |
DOI | 10.1109/VizSec53666.2021.00010 |
Citation Key | schreiber_towards_2021 |