11th International Conference on Software Security (ICSS 2025) is traditionally, security in software has been thought to be something that can be easily added on as a patch, post-development, and sometimes even after the deployment of the software. According to the US-Computer Emergency Readiness Team (US-CERT), “most successful attacks result from targeting and exploiting known, non-patched software vulnerabilities and insecure software configurations, many of which are introduced during design and code.” Hence, it is imperative that secure design, coding and testing principles as well as deployment and maintenance are thoroughly embedded in the software development lifecycle. At the same time, software security is very inter-disciplinary, as software is being developed for a variety of applications – web, Internet, database, single and distributed computer systems, etc.
Topics: • Software Security Attacks and Solutions • Static and Dynamic Code Analysis for Software Security • Validation, Verification and Testing for Software Security • Virtualization and Cloud Computing for Software Security • Cryptography for Software Security • Firewalls and Intrusion Detection/Prevention Systems for Software Security • Software Penetration and Protection