BF Tool Examples
Irena Bojanova, Inventor/Creator, PI & Lead, NIST Bugs Framework (BF), 2014 – ~~~
The BF GUI Tool guides the specification of a security vulnerability as a chain of underlying weaknesses. A security bug causes the first weakness, which leads to an error. This error becomes the cause (i.e., the fault) of the next weakness and propagates through subsequent weaknesses until a final error is reached, enabling a security failure. The causation within a weakness is by a meaningful <cause, operation>→consequence relation. The causation between weaknesses is by error type to fault type match and operation flow or error↷fault by value propagation.
BFToolExamples Download → Key required:
https://samate.nist.gov/services/BF/BFGUI/BFToolExamples?key=<code>YOUR_KEY</code>
Open the BF Formal Specifications of Security Vulnerabilities using the BF GUI Tool. Use the BF Tool to navigate the chains of BF Weaknesses, generate graphocal representations, and save in extended or bare-bone formal BF specification formats.
BF CITATION: