Abstract
Much research has been conducted to detect vulnerabilities of Web Applications; however, these never proposed a methodology to measure the vulnerabilities either qualitatively or quantitatively. In this paper, a methodology is proposed to investigate the quantification of vulnerabilities in Web Applications. We applied the Goal Question Metrics (GQM) methodology to determine all possible security factors and sub-factors of Web Applications in the Department of Transportation (DOT) as our proof of concept. Then we introduced a Multi-layered Fuzzy Logic (MFL) approach based on the security sub-factors' prioritization in the Analytic Hierarchy Process (AHP). Using AHP, we weighted each security sub-factor before the quantification process in the Fuzzy Logic to handle imprecise crisp number calculation.
Author supplied keywords
Cite
CITATION STYLE
Shojaeshafiei, M., Etzkorn, L., & Anderson, M. (2020). Analytic hierarchy process-based fuzzy measurement to quantify vulnerabilities of web applications. International Journal of Computer Networks and Communications, 12(4), 105–123. https://doi.org/10.5121/ijcnc.2020.12407
Register to see more suggestions
Mendeley helps you to discover research relevant for your work.