Source Code Analysis Laboratory (SCALe) for Energy Delivery Systems

Abstract

The Source Code Analysis Laboratory (SCALe) is an operational capability that tests software applications for conformance to one of the CERT(registered name) secure coding standards. CERT secure coding standards provide a detailed enumeration of coding errors that have resulted in vulnerabilities for commonly used software development languages. The SCALe team at CERT, a program of Carnegie Mellon University's Software Engineering Institute, analyzes a developer's source code and provides a detailed report of findings to guide the code's repair. After the developer has addressed these findings and the SCALe team determines that the product version conforms to the standard, CERT issues the developer a certificate and lists the system in a registry of conforming systems. This report details the SCALe process and provides an analysis of energy delivery systems. Though SCALe can be used in various capacities, it is particularly significant for conformance testing of energy delivery systems because of their critical importance.

Open PDF

Document Details

Document Type
Technical Report
Publication Date
Dec 01, 2010
Accession Number
ADA537058

Entities

People

  • David Svoboda
  • James Mccurley
  • Jefferson Welch
  • Philip Miller
  • Robert C. Seacord
  • Robert W. Stoddard
  • William Dormann

Organizations

  • Carnegie Mellon University

Tags

Communities of Interest

  • Cyber
  • Engineered Resilient Systems

DTIC Thesaurus Topics

  • Accuracy
  • Application Software
  • C Programming Language
  • Computer Programming
  • Computer Programs
  • Computer Science
  • Computers
  • Debugging
  • Engineering
  • Failure Mode And Effect Analysis
  • Language
  • Operating Systems
  • Programming Languages
  • Reliability
  • Software Development
  • Standards
  • Vulnerability

Fields of Study

  • Computer science
  • Engineering

Readers

  • Software Engineering.