- 专利标题: TARGETED SECURITY TESTING
-
申请号: US13431808申请日: 2012-03-27
-
公开(公告)号: US20130174262A1公开(公告)日: 2013-07-04
- 发明人: Yair Amit , Lotem Guy , Daniel Kalman , Ori Segal , Omri Weisman
- 申请人: Yair Amit , Lotem Guy , Daniel Kalman , Ori Segal , Omri Weisman
- 申请人地址: US NY Armonk
- 专利权人: International Business Machines Corporation
- 当前专利权人: International Business Machines Corporation
- 当前专利权人地址: US NY Armonk
- 主分类号: G06F21/00
- IPC分类号: G06F21/00 ; G06F17/00
摘要:
Source code of a plurality of web pages including script code is statically analyzed. A page including a potential vulnerability is identified based on the static analysis. A page not including a potential vulnerability is identified based on the static analysis. The web page including the potential vulnerability is dynamically analyzed using a set of test payloads. The page not including the potential vulnerability is dynamically analyzed using a subset of the set of test payloads, the subset including fewer test payloads than the set of test payloads.
公开/授权文献
- US09971897B2 Targeted security testing 公开/授权日:2018-05-15
信息查询