Analytic hierarchy process-based fuzzy measurement to quantify vulnerabilities of web applications

7Citations
Citations of this article
11Readers
Mendeley users who have this article in their library.

Abstract

Much research has been conducted to detect vulnerabilities of Web Applications; however, these never proposed a methodology to measure the vulnerabilities either qualitatively or quantitatively. In this paper, a methodology is proposed to investigate the quantification of vulnerabilities in Web Applications. We applied the Goal Question Metrics (GQM) methodology to determine all possible security factors and sub-factors of Web Applications in the Department of Transportation (DOT) as our proof of concept. Then we introduced a Multi-layered Fuzzy Logic (MFL) approach based on the security sub-factors' prioritization in the Analytic Hierarchy Process (AHP). Using AHP, we weighted each security sub-factor before the quantification process in the Fuzzy Logic to handle imprecise crisp number calculation.

Cite

CITATION STYLE

APA

Shojaeshafiei, M., Etzkorn, L., & Anderson, M. (2020). Analytic hierarchy process-based fuzzy measurement to quantify vulnerabilities of web applications. International Journal of Computer Networks and Communications, 12(4), 105–123. https://doi.org/10.5121/ijcnc.2020.12407

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free