@article{ART001601935},
author={방기석 and 김일곤 and 이지연 and 이준석 and CHOIJinYoung},
title={Classification Criteria and Application Methodology for Evaluating IT Security Products},
journal={Journal of Knowledge Information Technology and Systems},
issn={1975-7700},
year={2011},
volume={6},
number={5},
pages={105-112}
TY - JOUR
AU - 방기석
AU - 김일곤
AU - 이지연
AU - 이준석
AU - CHOIJinYoung
TI - Classification Criteria and Application Methodology for Evaluating IT Security Products
JO - Journal of Knowledge Information Technology and Systems
PY - 2011
VL - 6
IS - 5
PB - Korea Knowledge Information Technology Society
SP - 105
EP - 112
SN - 1975-7700
AB - CC(Common Criteria) requires to collect vulnerability information and vulnerability analysis by using penetration testing for evaluating IT security products. However, CC has been criticized from developers or QA managers due to its complexity of terms, abstract description of evaluation methods and non-existence of guidelines. In this paper, we propose a guideline of vulnerability assessment for developers and evaluators by analyzing and summarizing of its requirements and processes defined in CC. To do this, we classify the evaluation process of AVA assurance family into 4 parts and describe each evaluation working systematically unit under every steps.
KW - Common Criteria;Vulnerability Classification;AVA
DO -
UR -
ER -
방기석, 김일곤, 이지연, 이준석 and CHOIJinYoung. (2011). Classification Criteria and Application Methodology for Evaluating IT Security Products. Journal of Knowledge Information Technology and Systems, 6(5), 105-112.
방기석, 김일곤, 이지연, 이준석 and CHOIJinYoung. 2011, "Classification Criteria and Application Methodology for Evaluating IT Security Products", Journal of Knowledge Information Technology and Systems, vol.6, no.5 pp.105-112.
방기석, 김일곤, 이지연, 이준석, CHOIJinYoung "Classification Criteria and Application Methodology for Evaluating IT Security Products" Journal of Knowledge Information Technology and Systems 6.5 pp.105-112 (2011) : 105.
방기석, 김일곤, 이지연, 이준석, CHOIJinYoung. Classification Criteria and Application Methodology for Evaluating IT Security Products. 2011; 6(5), 105-112.
방기석, 김일곤, 이지연, 이준석 and CHOIJinYoung. "Classification Criteria and Application Methodology for Evaluating IT Security Products" Journal of Knowledge Information Technology and Systems 6, no.5 (2011) : 105-112.
방기석; 김일곤; 이지연; 이준석; CHOIJinYoung. Classification Criteria and Application Methodology for Evaluating IT Security Products. Journal of Knowledge Information Technology and Systems, 6(5), 105-112.
방기석; 김일곤; 이지연; 이준석; CHOIJinYoung. Classification Criteria and Application Methodology for Evaluating IT Security Products. Journal of Knowledge Information Technology and Systems. 2011; 6(5) 105-112.
방기석, 김일곤, 이지연, 이준석, CHOIJinYoung. Classification Criteria and Application Methodology for Evaluating IT Security Products. 2011; 6(5), 105-112.
방기석, 김일곤, 이지연, 이준석 and CHOIJinYoung. "Classification Criteria and Application Methodology for Evaluating IT Security Products" Journal of Knowledge Information Technology and Systems 6, no.5 (2011) : 105-112.