The wireless communication apparatus having a markup language-based man-machine interface

    公开(公告)号:JP5548229B2

    公开(公告)日:2014-07-16

    申请号:JP2012085792

    申请日:2012-04-04

    摘要: A system, method, and software product provide a wireless communications device with a markup language based man-machine interface. The man-machine interface provides a user interface for the various telecommunications functionality of the wireless communication device, including dialing telephone numbers, answering telephone calls, creating messages, sending messages, receiving messages, establishing configuration settings, which is defined in markup language, such as HTML, and accessed through a browser program executed by the wireless communication device. This feature enables direct access to Internet and World Wide Web content, such as Web pages, to be directly integrated with telecommunication functions of the device, and allows Web content to be seamlessly integrated with other types of data, since all data presented to the user via the user interface is presented via markup language-based pages. The browser processes an extended form of HTML that provides new tabs and attributes that enhance the navigational, logical, and display capabilities of conventional HTML, and particularly adapt HTML to be displayed and used on wireless communication devices with small screen displays. The wireless communication device includes the browser, a set of portable components, and portability layer. The browser includes protocol handlers, which implement different protocols for accessing various functions of the wireless communication device, and content handlers, which implement various content display mechanisms for fetching and outputting content on a screen display.

    Xss detection method and apparatus

    公开(公告)号:JP2012533806A

    公开(公告)日:2012-12-27

    申请号:JP2012520889

    申请日:2010-07-23

    IPC分类号: G06F21/53 G06F21/56 G06F21/57

    摘要: 本発明が開示するのは、ウェブページのXSS脆弱性を検出するXSS検出方法であって、ウェブページが受け取り可能なパラメータ値ペアの集合に含まれる各々のパラメータ値ペアについて、専用スクリプトが挿入されたパラメータ値ペアを構成する処理と、専用スクリプトが挿入されたパラメータ値ペアに基づいてウェブページに対応するURLを組み立てる処理と、組み立てられたURLに対応する動的ウェブページコンテンツを取得する処理と、取得した動的ウェブページコンテンツの実行をシミュレートして、専用スクリプトが実行された場合にはウェブページにおけるパラメータの処理がXSS脆弱性を有すると判定する処理と、を有することを特徴とするXSS検出方法である。 本発明はまた、上記方法に対応するXSS検出装置と、こうした装置を使用するウェブサイトセキュリティスキャンシステムおよびウェブスキャンシステムとを開示する。
    【選択図】 図3

    Storage device to prevent the falsification of data

    公开(公告)号:JP4837378B2

    公开(公告)日:2011-12-14

    申请号:JP2006000030

    申请日:2006-01-04

    IPC分类号: G06F21/24 G06F3/06 G06F12/14

    摘要: When a file server is to create data that does not permit falsification in an external storage, it is not possible to guarantee that the rewriting of this data can be prevented from a computer connected to the external storage without going through a file server. Provided is a storage system configured from a first storage (120) having a file I/O processing unit (140) and a second storage (130) connected to this first storage, wherein the first storage includes a unit (148) for requesting a change of access authority to the storage area in the own storage and in the second storage provided to the own storage. An access request to a storage area in a second storage from a computer connected to a second storage without going through a file I/O processing unit is restricted based on the change of access authority executed by the second storage upon receiving the request from the first storage.