发明申请
US20080133976A1 Systematic Approach to Uncover Visual Ambiguity Vulnerabilities 有权
揭示视觉模糊性脆弱性的系统方法

Systematic Approach to Uncover Visual Ambiguity Vulnerabilities
摘要:
To achieve end-to-end security, traditional machine-to-machine security measures are insufficient if the integrity of the graphical user interface (GUI) is compromised. GUI logic flaws are a category of software vulnerabilities that result from logic flaws in GUI implementation. The invention described here is a technology for uncovering these flaws using a systematic reasoning approach. Major steps in the technology include: (1) mapping a visual invariant to a program invariant; (2) formally modeling the program logic, the user actions and the execution context, and systematically exploring the possibilities of violations of the program invariant; (3) finding real spoofing attacks based on the exploration.
信息查询
0/0