METHOD FOR DETECTING VULNERABILITIES IN SOFTWARE

    公开(公告)号:US20230325513A1

    公开(公告)日:2023-10-12

    申请号:US18327941

    申请日:2023-06-02

    IPC分类号: G06F21/57 G06F8/41 G06F21/53

    摘要: A method, an apparatus, and a storage medium for detecting vulnerabilities in software to protect a computer system from security and compliance breaches are provided. The method includes providing a ruleset code declaring programming interfaces of a target framework and including rules that define an admissible execution context when invoking the programming interfaces, providing a source code to be scanned for vulnerabilities; compiling the source code into a first execution code having additional instructions inserted to facilitate tracking of an actual execution context of the source code, compiling the ruleset code into a second execution code that can be executed together with the first execution code, executing the first execution code within an virtual machine and passing calls of the programming interfaces to the second execution code, and detecting a software vulnerability when the actual execution context disagrees with the admissible execution context.

    METHOD FOR DETECTING VULNERABILITIES IN SOFTWARE

    公开(公告)号:US20210173941A1

    公开(公告)日:2021-06-10

    申请号:US17157559

    申请日:2021-01-25

    IPC分类号: G06F21/57 G06F8/41 G06F21/53

    摘要: A method, an apparatus, and a storage medium for detecting vulnerabilities in software to protect a computer system from security and compliance breaches are provided. The method includes providing a ruleset code declaring programming interfaces of a target framework and including rules that define an admissible execution context when invoking the programming interfaces, providing a source code to be scanned for vulnerabilities; compiling the source code into a first execution code having additional instructions inserted to facilitate tracking of an actual execution context of the source code, compiling the ruleset code into a second execution code that can be executed together with the first execution code, executing the first execution code within an virtual machine and passing calls of the programming interfaces to the second execution code, and detecting a software vulnerability when the actual execution context disagrees with the admissible execution context.

    Method for detecting vulnerabilities in software

    公开(公告)号:US10902129B2

    公开(公告)日:2021-01-26

    申请号:US15834381

    申请日:2017-12-07

    IPC分类号: G06F21/57 G06F8/41 G06F21/53

    摘要: A method, an apparatus, and a storage medium for detecting vulnerabilities in software to protect a computer system from security and compliance breaches are provided. The method includes providing a ruleset code declaring programming interfaces of a target framework and including rules that define an admissible execution context when invoking the programming interfaces, providing a source code to be scanned for vulnerabilities; compiling the source code into a first execution code having additional instructions inserted to facilitate tracking of an actual execution context of the source code, compiling the ruleset code into a second execution code that can be executed together with the first execution code, executing the first execution code within an virtual machine and passing calls of the programming interfaces to the second execution code, and detecting a software vulnerability when the actual execution context disagrees with the admissible execution context.

    METHOD FOR DETECTING VULNERABILITIES IN SOFTWARE

    公开(公告)号:US20190180035A1

    公开(公告)日:2019-06-13

    申请号:US15834381

    申请日:2017-12-07

    IPC分类号: G06F21/57 G06F21/53

    摘要: A method, an apparatus, and a storage medium for detecting vulnerabilities in software to protect a computer system from security and compliance breaches are provided. The method includes providing a ruleset code declaring programming interfaces of a target framework and including rules that define an admissible execution context when invoking the programming interfaces, providing a source code to be scanned for vulnerabilities; compiling the source code into a first execution code having additional instructions inserted to facilitate tracking of an actual execution context of the source code, compiling the ruleset code into a second execution code that can be executed together with the first execution code, executing the first execution code within an virtual machine and passing calls of the programming interfaces to the second execution code, and detecting a software vulnerability when the actual execution context disagrees with the admissible execution context.

    SYSTEM AND METHOD FOR AUTOMATIC CORRECTION OF A DATABASE CONFIGURATION IN CASE OF QUALITY DEFECTS
    5.
    发明申请
    SYSTEM AND METHOD FOR AUTOMATIC CORRECTION OF A DATABASE CONFIGURATION IN CASE OF QUALITY DEFECTS 审中-公开
    用于自动校正质量缺陷情况下数据库配置的系统和方法

    公开(公告)号:US20140379664A1

    公开(公告)日:2014-12-25

    申请号:US13921834

    申请日:2013-06-19

    IPC分类号: G06F11/14

    摘要: The present invention refers to a system, a method and product for automatically identifying quality defects in configuration parameters of a database system and for automatically correcting them according to predefined quality procedures. The method is executed on a central server (12) and on several satellite systems (10) as well. The method may be integral part of an enterprise resource planning system.

    摘要翻译: 本发明涉及一种用于自动识别数据库系统的配置参数中的质量缺陷并根据预定义的质量程序自动校正它们的系统,方法和产品。 该方法也在中央服务器(12)和几个卫星系统(10)上执行。 该方法可能是企业资源规划系统的组成部分。

    Method for detecting vulnerabilities in software

    公开(公告)号:US11669623B2

    公开(公告)日:2023-06-06

    申请号:US17157559

    申请日:2021-01-25

    IPC分类号: G06F21/57 G06F8/41 G06F21/53

    摘要: A method, an apparatus, and a storage medium for detecting vulnerabilities in software to protect a computer system from security and compliance breaches are provided. The method includes providing a ruleset code declaring programming interfaces of a target framework and including rules that define an admissible execution context when invoking the programming interfaces, providing a source code to be scanned for vulnerabilities; compiling the source code into a first execution code having additional instructions inserted to facilitate tracking of an actual execution context of the source code, compiling the ruleset code into a second execution code that can be executed together with the first execution code, executing the first execution code within an virtual machine and passing calls of the programming interfaces to the second execution code, and detecting a software vulnerability when the actual execution context disagrees with the admissible execution context.