软件中可被利用造成:Φ娜醯。产品中存在的安全缺陷,攻击者可利用这些弱点对产品进行攻击,是信息安全领域重要概念。
| 标准号 & 类别 | 标准名称 | 发布 |
|---|---|---|
| BS EN ISO/IEC 29147:2020 术语 |
Information technology. Security techniques. Vulnerability disclosure
|
2020-06-30 英国标准学会 |
| CSA ISO/IEC TR 24772-2:2020 指南标准 |
编程语言 避免编程语言漏洞的指南 第2部分:Ada(采用 ISO/IEC TR 24772-2:2020,第一版,2020-04) Programming languages - Guidance to avoiding vulnerabilities in programming languages - Part 2: Ada (Adopted ISO/IEC TR 24772-2:2020, first edition, 2020-04)
|
2020-11-01 加拿大标准协会 |
| DB32/T 4274-2022 规范标准 |
Industrial Internet Security Vulnerability Analysis and Detection Specification
工业互联网 |
2022-05-26 江苏省标准 |
| DB32/T 4432-2022 规范 |
Technical specifications for automatic vulnerability scanning of video surveillance networked information security
视频监控系统 |
2022-1-1 江苏省标准 |
| DB52/T 1867-2025 规范 |
Functional requirements for the construction of the big data security range software system
靶标 |
2025-03-06 贵州省地方标准 |
| DIN EN ISO IEC 29147 E:2020-01 指南标准 |
Information technology - Security techniques - Vulnerability disclosure (ISO/IEC 29147:2018)
|
2019-12-06 德国标准化学会 |
| ETSI GS ISI 001-1 V1.1.1 (2013-04)-2013 指南标准 |
信息安全指标 (ISI) 指标 (INC) 第 1 部分:供组织用来衡量其安全态势的全套运营指标 Information Security Indicators (ISI); Indicators (INC); Part 1: A full set of operational indicators for organizations to use to benchmark their security posture
安全事件 |
2013-04-01 欧洲电信标准协会 |
| ETSI GS ISI 001-1 V1.1.2 (2015-06)-2015 指南标准 |
信息安全指标 (ISI) 指标 (INC) 第 1 部分:供组织用来衡量其安全态势的全套运营指标 Information Security Indicators (ISI); Indicators (INC); Part 1: A full set of operational indicators for organizations to use to benchmark their security posture
安全事件 |
2015-06-01 欧洲电信标准协会 |
| ETSI GS ISI 002 V1.1.1 (2013-04)-2013 指南标准 |
Information Security Indicators (ISI); Event Model A security event classification model and taxonomy
安全事件 术语表 |
2013-04-01 欧洲电信标准协会 |
| ETSI GS ISI 002 V1.2.1 (2015-11)-2015 指南标准 |
Information Security Indicators (ISI); Event Model A security event classification model and taxonomy
不符合项 安全事件 |
2015-11-01 欧洲电信标准协会 |
| ETSI GS ISI 004 V1.1.1 (2013-12)-2013 分类标准 |
Information Security Indicators (ISI); Guidelines for event detection implementation
安全事件 安全指标 |
2013-12-01 欧洲电信标准协会 |
| ETSI TCRTR 049 ed.1 (1996-07)-1996 指南标准 |
Security Techniques Advisory Group (STAG); Security requirements capture
威胁 |
1996-07-01 欧洲电信标准协会 |
| ETSI TR 103 305-1-2018 规范 |
CYBER; Critical Security Controls for Effective Cyber Defence; Part 1: The Critical Security Controls
关键安全控制 |
2018-09-01 欧洲电信标准协会 |
| ETSI TR 103 838-2022 指南标准 |
Cyber Security; Guide to Coordinated Vulnerability Disclosure
|
2022-01-01 欧洲电信标准协会 |
| ETSI TS 102 165-1-2017 指南标准 |
网络;方法和协议; 第1部分:威胁、漏洞、风险分析 (TVRA) 的方法和形式 CYBER; Methods and protocols; Part 1: Method and pro forma for Threat, Vulnerability, Risk Analysis (TVRA)
目标评估对象 |
2017-10-01 欧洲电信标准协会 |
| GB/T 34944-2017 规范 |
Source code vulnerability testing specification for Java
|
2017-11-01 国家市场监督管理总局 |
| GB/T 37954-2019 测试评价方法 |
信息安全技术 工业控制系统漏洞美利体育登录入口官网产品技术要求及测试评价方法 Information security technology—Technique requirements and testing and evaluation approaches for industrial control system vulnerability detection products
工业控制系统 |
2019-08-30 国家市场监督管理总局 |
| IEC TR 62210:2003 指南标准 |
Power system control and associated communications - Data and communication security
威胁 |
2003-05 国际电工委员会 |
| IEC TS 63074:2023 规范 |
Safety of machinery - Security aspects related to functional safety of safety-related control systems
安全威胁 安全相关控制系统 |
2023-02-09 国际电工委员会 |
| ITU-T X.1214-2018 指南标准 |
电信/信息和通信技术网络中的安全评估技术(第 17 研究组) Security assessment techniques in telecommunication/information and communication technology networks (Study Group 17)
安全评估 |
2018-03-01 国际电信联盟 |
| ITU-T X.1500 (2011) Amd. 1-2012 试验 |
Revised structured cybersecurity information exchange techniques
网络安全信息交换 |
2012 国际电信联盟 |
| ITU-T X.1500 (2011) Amd. 2-2012 规范 |
Revised structured cybersecurity information exchange techniques
网络安全信息交换 |
2012 国际电信联盟 |
| ITU-T X.1500 (2011) Amd. 4-2013 规范 |
Revised structured cybersecurity information exchange techniques
网络安全信息交换 |
2013 国际电信联盟 |
| ITU-T X.1500 (2011) Amd. 6-2014 规范 |
Revised structured cybersecurity information exchange techniques
威胁 |
2014 国际电信联盟 |
| ITU-T X.1521-2016 指南标准 |
Common vulnerability scoring system
|
2016-03-01 国际电信联盟 |
| ITU-T X.1524-2012 规范标准 |
Common weakness enumeration (Study Group 17)
|
2012-03-01 国际电信联盟 |
| JR/T 0276-2023 指南标准 |
Securities and Futures Industry Information System Penetration Testing Guide
渗透测试 |
2023-02-07 行业标准-金融 |
| LST EN ISO/IEC 29147:2020 规范 |
信息技术 安全方法 漏洞披露(ISO/IEC 29147:2018) Information technology - Security techniques - Vulnerability disclosure (ISO/IEC 29147:2018)
漏洞披露 |
2020-08-14 立陶宛标准局 |
| PD ISO/IEC TR 24772-3:2020 规范 |
Programming languages. Guidance to avoiding vulnerabilities in programming languages. C
编程语言 |
2020-05-26 英国标准学会 |
| prEN 40000-1-1:2025 术语 |
Cybersecurity requirements for products with digital elements - Vocabulary
|
2025-10-01 欧洲电工标准化委员会 |
| SS-EN ISO/IEC 29147:2020 指南标准 |
信息技术 安全技术 漏洞披露(ISO/IEC 29147:2018) Information technology - Security techniques - Vulnerability disclosure (ISO/IEC 29147:2018)
漏洞披露 |
2020-06-10 瑞典标准研究所 |
| T/GHDQ 101-2022 规范 |
Technical requirements for Information Security in vehicle production and operation stage
更新 |
2022-11-02 中国团体标准 |
| UL 2900-1-2020 规范标准 |
Software Cybersecurity for Network-Connectable Products, Part 1: General Requirements
恶意软件 |
2020-06-05 美国保险商实验所 |
| UL 2900-1:2023-04 规范标准 |
STANDARD FOR SAFETY Software Cybersecurity for Network- Connectable Products, Part 1 : General Requirements
恶意软件 |
2023-4-1 美国保险商实验所 |
| UNE-EN ISO/IEC 29147:2020 规范 |
Information technology - Security techniques - Vulnerability disclosure (ISO/IEC 29147:2018) (Endorsed by Asociación Espa?ola de Normalización in July of 2020.)
协调 |
2020-07-01 西班牙标准化协会 |
| UNE-EN ISO/IEC 30111:2020 规范/指南 |
Information technology - Security techniques - Vulnerability handling processes (ISO/IEC 30111:2019) (Endorsed by Asociación Espa?ola de Normalización in July of 2020.)
|
2020-07-01 西班牙标准化协会 |
| YD/T 4996-2024 规范 |
Tech Requirements for Vulnerability Management Platform of Telecommunications and Internet Industry Network Operators
|
2024-10-24 行业标准-邮电通信 |
Copyright ?2007-2026 ANTPEDIA, All Rights Reserved
京ICP备07018254号 京公网安备1101085018 电信与信息服务业务经营许可证:京ICP证110310号
页面更新时间: 2026-06-10 01:13