Tools

J Modex

Abstract

Detecting security vulnerabilities in web applications is an important task before taking them on-line. We present jModex, a tool that analyzes the code of web applications to extract behavioral models. The security properties of these models can then be verified with a model checker. An initial evaluation, in which a confirmed security flaw is identified using a model extracted by jModex, shows the tool potential.

Note: iSummarize is an independent component of this tool. See related publication for details.

Related publication

Petru Florin Mihancea, Marius Minea, jModex: Model extraction for verifying security properties of web applications

Repository

https://github.com/petrufm/jModex.git

Demo video

(:youtube kIE4Bxqbwrc border=1 :)