Computer Science, Software, Computer Engineering, Information Systems
4
Scopus Publications
Scopus Publications
CVE, CWE, and CPE Use Case Zh. E. Sartabanova, V. T. Dimitrov Physics of Particles and Nuclei, 2025 Abstract In an ever-changing information environment, many companies face increasingly complex challenges in ensuring the security and integrity of the sensitive data they manage. This article looks at how to consider cybersecurity risks, i.e. what resources and tools to initially apply before purchasing or developing software.
Building an ontology for CWE from the point of view of architectural concept Ceur Workshop Proceedings, 2021
APPLYING THE KNOWLEDGE BASE OF CWE WEAKNESSES IN SOFTWARE DESIGN Zh. E. Sartabanova, V. T. Dimitrov, S. M. Sarsimbayeva Kaznu Bulletin Mathematics Mechanics Computer Science Series, 2020 The article deals with the issues of organizing software weaknesses by the software architect at the stage of its design using the developed ontological knowledge base of CWE weaknesses. The main goal of this research is to analyze the software defect system based on CWE and develop an ontology model (knowledge base) of this system for software architects. The use of artificial intelligence tools, in particular the development of knowledge bases based on weaknesses, will provide new opportunities for searching and researching software weaknesses. This model being developed will be useful for application by software developers, researchers in the field of software design and cybersecurity, as well as teachers of educational institutions that conduct courses in software development technology and information security. For developers, this model can serve as an assistant and reference when designing software, since weaknesses are organized by a well-known security tactic, helping the designer to embed security during the design process instead of detecting weaknesses after the software has been created. Researchers will be interested in studying and applying software weaknesses in their work. Teachers can use this model as a reference when studying and discussing security vulnerabilities in software design or architecture, as well as the types of errors that can be made during software development. The functions of the software architect are analyzed, and an example of the built ontological knowledge base of CWE weaknesses is given.
Modelling of CWEs on the CWE-287 example Ceur Workshop Proceedings, 2019