Automated security threat testing of web pages
    1.
    发明授权
    Automated security threat testing of web pages 有权
    网页的自动安全威胁测试

    公开(公告)号:US07975296B2

    公开(公告)日:2011-07-05

    申请号:US10360572

    申请日:2003-02-06

    IPC分类号: G08B23/00 G06F9/00

    摘要: A method of security testing a web application is presented. The method identifies a web application to be tested, determines potential security vulnerabilities of the web application, generates one or more security tests for testing the potential vulnerabilities, and executes the security test on the web application. The results of the security testing are then used to make the web application less vulnerable to security attacks.

    摘要翻译: 介绍了Web应用程序的安全测试方法。 该方法识别要测试的Web应用程序,确定Web应用程序的潜在安全漏洞,生成一个或多个用于测试潜在漏洞的安全测试,并对Web应用程序执行安全测试。 然后,使用安全测试的结果使Web应用程序不易受到安全攻击的影响。

    Analyzing an extended finite state machine system model
    3.
    发明授权
    Analyzing an extended finite state machine system model 有权
    分析扩展有限状态机系统模型

    公开(公告)号:US06694290B1

    公开(公告)日:2004-02-17

    申请号:US09318204

    申请日:1999-05-25

    IPC分类号: G06F945

    CPC分类号: G06F11/3664 G06F11/3688

    摘要: A method of using a computer to analyze an extended finite state machine model of a system includes receiving at least one requirement expression, determining at least one path of states and transitions through the model, evaluating at least one of the requirement expressions based on at least one of the determined paths through the model to determine whether the path satisfies the requirement expression, and generating a report based on the evaluating.

    摘要翻译: 一种使用计算机来分析系统的扩展有限状态机模型的方法包括:接收至少一个需求表达,确定通过模型的至少一个状态和转换路径,至少基于至少一个评估需求表达式中的至少一个 通过模型确定路径之一,以确定路径是否满足需求表达式,以及基于评估生成报告。