As software becomes more pervasive and complex, it’s increasingly important to assure that a system will be safe even in the presence of residual software faults (or bugs). Software fault injection consists of the deliberate introduction of software faults for assessing the impact of faulty software on a system and improving its fault tolerance. SFI has been included as a recommended practice in recent safety standards, and has therefore gained interest among practitioners, but it’s still unclear how it can be effectively used for certification purposes. In this article, the authors discuss the adoption of SFI in the context of safety certification, present a tool for the injection of realistic software faults, and show the usage of that tool in evaluating and improving the robustness of an operating system used in the avionic domain.

Fault Injection for Software Certification / Cotroneo, Domenico; Natella, Roberto. - In: IEEE SECURITY & PRIVACY. - ISSN 1540-7993. - 11:4(2013), pp. 38-45. [10.1109/MSP.2013.54]

Fault Injection for Software Certification

COTRONEO, DOMENICO;NATELLA, ROBERTO
2013

Abstract

As software becomes more pervasive and complex, it’s increasingly important to assure that a system will be safe even in the presence of residual software faults (or bugs). Software fault injection consists of the deliberate introduction of software faults for assessing the impact of faulty software on a system and improving its fault tolerance. SFI has been included as a recommended practice in recent safety standards, and has therefore gained interest among practitioners, but it’s still unclear how it can be effectively used for certification purposes. In this article, the authors discuss the adoption of SFI in the context of safety certification, present a tool for the injection of realistic software faults, and show the usage of that tool in evaluating and improving the robustness of an operating system used in the avionic domain.
2013
Fault Injection for Software Certification / Cotroneo, Domenico; Natella, Roberto. - In: IEEE SECURITY & PRIVACY. - ISSN 1540-7993. - 11:4(2013), pp. 38-45. [10.1109/MSP.2013.54]
File in questo prodotto:
Non ci sono file associati a questo prodotto.

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/11588/562193
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 47
  • ???jsp.display-item.citation.isi??? 36
social impact