发明授权
- 专利标题: Systems and methods for prevention of JSON attacks
- 专利标题(中): 防止JSON攻击的系统和方法
-
申请号: US12645913申请日: 2009-12-23
-
公开(公告)号: US09094435B2公开(公告)日: 2015-07-28
- 发明人: Craig Anderson , Anoop Reddy , Yariv Keinan
- 申请人: Craig Anderson , Anoop Reddy , Yariv Keinan
- 申请人地址: US FL Fort Lauderdale
- 专利权人: CITRIX SYSTEMS, INC.
- 当前专利权人: CITRIX SYSTEMS, INC.
- 当前专利权人地址: US FL Fort Lauderdale
- 代理机构: Foley & Lardner LLP
- 代理商 Christopher J. McKenna
- 主分类号: G06F12/14
- IPC分类号: G06F12/14 ; H04L29/06
摘要:
Described herein is a method and system for prevention of personal computing attacks, such as JavaScript Objection Notation (JSON) attacks. An intermediary device is deployed between a plurality of clients and servers. A firewall executes on the intermediary device. A client sends a request to the server and the server sends a response to the request. The intermediary device intercepts the response and identifies that the response may contain possibly harmful content. The application firewall parses the content of the response and determines whether it contains any harmful content. If it does, the application firewall blocks the response from being sent to its destination. Additionally, the method and system can provide other security checks, such as content hijacking protection and data validation.
公开/授权文献
- US20110154472A1 SYSTEMS AND METHODS FOR PREVENTION OF JSON ATTACKS 公开/授权日:2011-06-23
信息查询