{"updated":"2025-01-20T02:33:25.445039+00:00","metadata":{"_oai":{"id":"oai:ipsj.ixsq.nii.ac.jp:00186543","sets":["1164:6389:9385:9386"]},"path":["9386"],"owner":"11","recid":"186543","title":["Webアプリケーション脆弱性診断結果における機械学習を用いた分析手法の提案"],"pubdate":{"attribute_name":"公開日","attribute_value":"2018-02-28"},"_buckets":{"deposit":"7e7986ca-e138-46de-be50-0e880c09bd56"},"_deposit":{"id":"186543","pid":{"type":"depid","value":"186543","revision_id":0},"owners":[11],"status":"published","created_by":11},"item_title":"Webアプリケーション脆弱性診断結果における機械学習を用いた分析手法の提案","author_link":["418746","418747","418751","418753","418755","418748","418750","418749","418754","418752"],"item_titles":{"attribute_name":"タイトル","attribute_value_mlt":[{"subitem_title":"Webアプリケーション脆弱性診断結果における機械学習を用いた分析手法の提案"},{"subitem_title":"Analyzing web application vulnerability testing reports by machine learning","subitem_title_language":"en"}]},"item_keyword":{"attribute_name":"キーワード","attribute_value_mlt":[{"subitem_subject":"Web Security","subitem_subject_scheme":"Other"}]},"item_type_id":"4","publish_date":"2018-02-28","item_4_text_3":{"attribute_name":"著者所属","attribute_value_mlt":[{"subitem_text_value":"NTTコミュニケーションズ株式会社技術開発部"},{"subitem_text_value":"NTTコミュニケーションズ株式会社技術開発部"},{"subitem_text_value":"NTTコミュニケーションズ株式会社技術開発部"},{"subitem_text_value":"NTTコミュニケーションズ株式会社技術開発部"},{"subitem_text_value":"NTTコミュニケーションズ株式会社技術開発部"}]},"item_4_text_4":{"attribute_name":"著者所属(英)","attribute_value_mlt":[{"subitem_text_value":"Technology Development, NTT Communications Corporation","subitem_text_language":"en"},{"subitem_text_value":"Technology Development, NTT Communications Corporation","subitem_text_language":"en"},{"subitem_text_value":"Technology Development, NTT Communications Corporation","subitem_text_language":"en"},{"subitem_text_value":"Technology Development, NTT Communications Corporation","subitem_text_language":"en"},{"subitem_text_value":"Technology Development, NTT Communications Corporation","subitem_text_language":"en"}]},"item_language":{"attribute_name":"言語","attribute_value_mlt":[{"subitem_language":"jpn"}]},"item_publisher":{"attribute_name":"出版者","attribute_value_mlt":[{"subitem_publisher":"情報処理学会","subitem_publisher_language":"ja"}]},"publish_status":"0","weko_shared_id":-1,"item_file_price":{"attribute_name":"Billing file","attribute_type":"file","attribute_value_mlt":[{"url":{"url":"https://ipsj.ixsq.nii.ac.jp/record/186543/files/IPSJ-SPT18027025.pdf","label":"IPSJ-SPT18027025.pdf"},"format":"application/pdf","billing":["billing_file"],"filename":"IPSJ-SPT18027025.pdf","filesize":[{"value":"1.7 MB"}],"mimetype":"application/pdf","priceinfo":[{"tax":["include_tax"],"price":"0","billingrole":"46"},{"tax":["include_tax"],"price":"0","billingrole":"44"}],"accessrole":"open_login","version_id":"8d542506-8e52-43bf-83f0-c8e22e555e1c","displaytype":"detail","licensetype":"license_note","license_note":"Copyright (c) 2018 by the Institute of Electronics, Information and Communication Engineers This SIG report is only available to those in membership of the SIG."}]},"item_4_creator_5":{"attribute_name":"著者名","attribute_type":"creator","attribute_value_mlt":[{"creatorNames":[{"creatorName":"名雲, 孝昭"}],"nameIdentifiers":[{}]},{"creatorNames":[{"creatorName":"久保, 佑介"}],"nameIdentifiers":[{}]},{"creatorNames":[{"creatorName":"小林, 泰大"}],"nameIdentifiers":[{}]},{"creatorNames":[{"creatorName":"長谷川, 亙"}],"nameIdentifiers":[{}]},{"creatorNames":[{"creatorName":"濱田, 貴広"}],"nameIdentifiers":[{}]}]},"item_4_creator_6":{"attribute_name":"著者名(英)","attribute_type":"creator","attribute_value_mlt":[{"creatorNames":[{"creatorName":"Takaaki, Nagumo","creatorNameLang":"en"}],"nameIdentifiers":[{}]},{"creatorNames":[{"creatorName":"Yuusuke, Kubo","creatorNameLang":"en"}],"nameIdentifiers":[{}]},{"creatorNames":[{"creatorName":"Yasuhiro, Kobayashi","creatorNameLang":"en"}],"nameIdentifiers":[{}]},{"creatorNames":[{"creatorName":"Wataru, Hasegawa","creatorNameLang":"en"}],"nameIdentifiers":[{}]},{"creatorNames":[{"creatorName":"Takahiro, Hamada","creatorNameLang":"en"}],"nameIdentifiers":[{}]}]},"item_4_source_id_9":{"attribute_name":"書誌レコードID","attribute_value_mlt":[{"subitem_source_identifier":"AA12628305","subitem_source_identifier_type":"NCID"}]},"item_4_textarea_12":{"attribute_name":"Notice","attribute_value_mlt":[{"subitem_textarea_value":"SIG Technical Reports are nonrefereed and hence may later appear in any journals, conferences, symposia, etc."}]},"item_resource_type":{"attribute_name":"資源タイプ","attribute_value_mlt":[{"resourceuri":"http://purl.org/coar/resource_type/c_18gh","resourcetype":"technical report"}]},"item_4_source_id_11":{"attribute_name":"ISSN","attribute_value_mlt":[{"subitem_source_identifier":"2188-8671","subitem_source_identifier_type":"ISSN"}]},"item_4_description_7":{"attribute_name":"論文抄録","attribute_value_mlt":[{"subitem_description":"Web アプリケーションに対するサイバー攻撃への対策として,リリース前に脆弱性の有無を診断することがますます重要になってきている.しかし一つの Web アプリケーションに対する診断であっても,診断すべき箇所と脆弱性の組み合わせは複雑かつ膨大であり,専門的な分析者であっても手動で網羅的な診断を実施することは困難である.そのため,一般的に大規模な診断対象に対して診断ツールが用いられるが,その結果に誤検知を含むことが少なくなく,最終的な正誤判定は分析者が手動で個別に確認する必要があるため,稼働を要する.本稿では,「診断結果に対して機械学習を応用した分析によって手動による確認作業を削減するための手法」 を提案する.","subitem_description_type":"Other"}]},"item_4_description_8":{"attribute_name":"論文抄録(英)","attribute_value_mlt":[{"subitem_description":"Web application vulnerability testing is important for preventing cyberattacks. However, it is difHcult to test all URLs and vulnerabilities in a web application, due to its complexity and enormousness of test items. Vulnerability reports of testing tools include false positives, although a tester uses the tools to reduce testing costs for large-scale applications. We propose our analyzing method for web vulnerability testing reports by machine leaming in order to reduce the cost of checking false positives.","subitem_description_type":"Other"}]},"item_4_biblio_info_10":{"attribute_name":"書誌情報","attribute_value_mlt":[{"bibliographicPageEnd":"6","bibliographic_titles":[{"bibliographic_title":"研究報告セキュリティ心理学とトラスト(SPT)"}],"bibliographicPageStart":"1","bibliographicIssueDates":{"bibliographicIssueDate":"2018-02-28","bibliographicIssueDateType":"Issued"},"bibliographicIssueNumber":"25","bibliographicVolumeNumber":"2018-SPT-27"}]},"relation_version_is_last":true,"weko_creator_id":"11"},"created":"2025-01-19T00:53:29.440611+00:00","id":186543,"links":{}}