Department of Computer and Information Science


IDE plugins for making secure software


Most of the current software security practices are to test the software using penetration testing at the very late stage of software development. As developers are not well trained to develop secure software, or their software security knowledge is not update, developers introduce software vulnerabilities when writing code.

The idea of this project is to prevent software vulnerability from the first place, i.e. from when developers typing code. The expected output of this project are plugins that will show bulb warning in IDE, when the code typed in by the developer is suspected to be a vulnerability. The general idea of implementation is to use source code analysis method to analyze the source code at real time for discovering vulnerability. 


