Most desirable features regarding taint-based vulnerability tools?

If you were to list your top most desirable features to include in a static-analysis taint-based vulnerability detection tool, what would they be? For example, being able to find/search source-sink paths through a tainted variable, flexibility to choose flow sensitive/insensitive analysis, etc.
http://dlvr.it/Sj80f8

No comments:

Post a Comment