Ontologies, as formal specifications of conceptualisation, are widely used in software engineering to manage software development, maintenance and security concerns. Recently, some ontology services were proposed for software vulnerability detection… Click to show full abstract
Ontologies, as formal specifications of conceptualisation, are widely used in software engineering to manage software development, maintenance and security concerns. Recently, some ontology services were proposed for software vulnerability detection and showed to be effective. Some could detect more bugs compared to static analysis tools; some could predict hidden bugs based on ontology reasoning. In this paper, we review existing ontology-based services for vulnerability detection techniques, describe their main ideas and design principles, and provide background knowledge for further research in this area.
               
Click one of the above tabs to view related content.