Invention Grant
- Patent Title: Detecting malicious components using commit histories
-
Application No.: US16712514Application Date: 2019-12-12
-
Publication No.: US11853422B2Publication Date: 2023-12-26
- Inventor: Henrik Plate
- Applicant: SAP SE
- Applicant Address: DE Walldorf
- Assignee: SAP SE
- Current Assignee: SAP SE
- Current Assignee Address: DE Walldorf
- Agency: Fountainhead Law Group P.C.
- Main IPC: G06F21/56
- IPC: G06F21/56 ; G06F8/71 ; G06N20/00 ; G06N7/01

Abstract:
Embodiments detect malicious code in distributed software components. A detector element references a source code repository (e.g., open source, commercial) containing lines of various files of a distributed artifact. Subject to certain possible optimizations, the detector inspects the individual files and lines of the artifact file-by-file and line-by-line, to identify whether any commit history information is available from a Versioning Control System (VCS). A risk assessor element receives from the detector element, results identifying those lines and/or files for which no VCS commit history is available. The risk assessor then references code features (e.g., file extension, security-critical API calls) in the results, to generate a probability of the malicious nature of the source code lacking VCS commit history information. An analysis report including this probability and additional relevant information, is offered to a user to conduct further manual review (e.g., to detect false positives attributable to benign/legitimate source code modification).
Public/Granted literature
- US20210182391A1 Detecting Malicious Components Using Commit Histories Public/Granted day:2021-06-17
Information query