z-logo
open-access-imgOpen Access
Spring Framework Benchmarking Utility for Static Application Security Testing (SAST) Tools
Author(s) -
Elizaveta Kuzmina,
Shahbaz Pervez,
Seyed Ebrahim Hosseini,
Muazma Shahbaz,
Adnan Akhunzada
Publication year - 2025
Publication title -
ieee internet of things journal
Language(s) - English
Resource type - Magazines
SCImago Journal Rank - 2.075
H-Index - 97
eISSN - 2327-4662
DOI - 10.1109/jiot.2025.3598235
Subject(s) - computing and processing , communication, networking and broadcast technologies
Software developers face several challenges when creating or maintaining applications, security assurance is one of them. To minimise the occurrence of vulnerabilities, developers utilise various solutions including static application security testing (SAST) tools. These tools use different analysis techniques to detect application flaws and support various programming languages, frameworks and third-party libraries. It is important to understand their capabilities. To the authors’ knowledge, researchers have not yet addressed the gap in the benchmarking of SAST tools used with Spring framework. Therefore, this research proposes a benchmarking utility that is designed to assess the performance of Spring framework SAST tools. The study is based on action research and consists of several parts: the analysis of existing Spring framework vulnerabilities, the collection and enhancement of benchmarking strategies from similar tools and the development of the utility using the collected data. The study findings are of interest to SAST providers as they would be able to use the benchmark for the evaluation of the detection capabilities of their SAST solution in Spring environment. Moreover, the utility could be used to provide benchmark for future research to compare other SAST tools. Overall, the research contributes to the IT, cyber security and related research fields.

The content you want is available to Zendy users.

Already have an account? Click here to sign in.
Having issues? You can contact us here
Accelerating Research

Address

John Eccles House
Robert Robinson Avenue,
Oxford Science Park, Oxford
OX4 4GP, United Kingdom