Skip to main content
QUICK REVIEW

[论文解读] Secure Software Development Methodologies: A Multivocal Literature Review

Arina Kudriavtseva, Olga Gadyatskaya|arXiv (Cornell University)|Nov 29, 2022
Information and Cyber Security被引用 4
一句话总结

本篇多源文献综述分析了2004年至2022年间来自产业界、政府机构和学术界的28项安全软件开发方法(SSDMs),将其中的技术性与辅助性(非技术性)安全实践映射至软件开发生命周期(SDLC)各阶段。研究识别出关键的研究空白,包括:缺乏有效性的有力证据、学术SSDM中非技术性实践的涵盖有限,以及尽管漏洞数量持续上升,现有方法仍未能被广泛采纳。

ABSTRACT

In recent years, the number of cyber attacks has grown rapidly. An effective way to reduce the attack surface and protect software is adoption of methodologies that apply security at each step of the software development lifecycle. While different methodologies have been proposed to address software security, recent research shows an increase in the number of vulnerabilities in software and data breaches. Therefore, the security practices incorporated in secure software development methodologies require investigation. This paper provides an overview of security practices involved in 28 secure software development methodologies from industry, government, and academia. To achieve this goal, we distributed the security practices among the software development lifecycle stages. We also investigated auxiliary (non-technical) practices, such as organizational, behavioral, legal, policy, and governance aspects that are incorporated in the secure software development methodologies. Furthermore, we explored methods used to provide evidence of the effectiveness of the methodologies. Finally, we present the gaps that require attention in the scientific community. The results of our survey may assist researchers and organizations to better understand the existing security practices integrated into the secure software development methodologies. In addition, our bridge between "technical" and "non-technical" worlds may be useful for non-technical specialists who investigate software security. Moreover, exploring the gaps that we found in current research may help improve security in software development and produce software with fewer number of vulnerabilities.

研究动机与目标

  • 对产业界、政府机构和学术界提供的28项安全软件开发方法(SSDMs)中的安全实践进行系统化整理。
  • 将这些实践映射至软件开发生命周期(SDLC)的各个阶段。
  • 探究支持软件安全的辅助性(非技术性)实践,如治理、政策、文化及沟通等。
  • 评估各方法所提供的有效性证据。
  • 识别当前SSDM研究与实践中的研究空白。

提出的方法

  • 依据Garousi等人提出的指南,开展多源文献综述,整合学术与产业界资料。
  • 收集了2004年至2022年间来自不同领域的28项SSDM。
  • 将安全实践映射至SDLC阶段(如需求、设计、实现、测试、部署)。
  • 将实践分类为技术性(如威胁建模、静态分析)与辅助性(如政策、文化、伦理、沟通)。
  • 审查各方法中报告的验证研究及有效性证据。
  • 通过内容、范围与证据质量的对比分析,识别研究空白。

实验结果

研究问题

  • RQ1在SDLC各阶段中,哪些安全实践被普遍整合进安全软件开发方法中?
  • RQ2安全软件开发方法如何整合非技术性(辅助性)安全实践,如治理、文化与政策?
  • RQ3这些方法提供了哪些类型的证据来支持其在减少软件漏洞方面的有效性主张?
  • RQ4为何组织往往开发定制化的SSDM,而非采用现有方法?
  • RQ5当前安全软件开发方法研究中的关键研究空白是什么?

主要发现

  • 大多数安全软件开发方法缺乏有效性的确凿证据,仅八篇学术论文中有的一篇包含案例研究。
  • 仅有两项方法包含了聚焦于需求或设计阶段的案例研究,表明实证验证程度有限。
  • 学术SSDM倾向于强调技术性实践,而对安全文化、政策及团队沟通等辅助性实践的涵盖不足。
  • 尽管存在大量SSDM,但软件漏洞数量仍在持续上升,表明方法开发与实际影响之间存在脱节。
  • 许多方法未能清晰阐明其方法的创新之处,往往重复使用现有框架中已记录的实践。
  • 组织倾向于开发专有SSDM而非采纳成熟方法,可能由于认知不足或认为实施负担过重。

更好的研究,从现在开始

从阅读论文到最终审阅,大幅缩短您的研究时间。

无需绑定信用卡

本解读由 AI 生成,并经人工编辑审核。