首页> 外国专利> WEB APPLICATION VULNERABILITY DETECTION METHOD, TERMINAL, AND COMPUTER-READABLE STORAGE MEDIUM

WEB APPLICATION VULNERABILITY DETECTION METHOD, TERMINAL, AND COMPUTER-READABLE STORAGE MEDIUM

机译:Web应用程序漏洞检测方法,终端和计算机可读存储介质

摘要

A Web application vulnerability detection method, a terminal, and a computer-readable storage medium. The method comprises: parsing an obtained Web application to obtain Web component information of the Web application; determining, according to the Web component information and history Web component information of the Web application in history records, whether the Web component information has changed; if it is determined that the Web component information has changed, determining that the Web application has changed; if it is determined that the Web component information of the Web application has not changed, obtaining content information of a corresponding page of the Web application, and determining, according to the content information, whether the Web application has changed; and if it is determined that the Web application has changed, invoking a preset vulnerability scanning engine to perform vulnerability detection on the changed Web application. The vulnerability detection of Web applications is implemented, and the vulnerability detection efficiency is improved.
机译:Web应用程序漏洞检测方法,终端和计算机可读存储介质。该方法包括:解析获取的Web应用,以获取Web应用的Web组件信息;根据历史记录中Web应用的Web组件信息和历史Web组件信息,确定Web组件信息是否发生了变化;如果确定Web组件信息已改变,则确定Web应用程序已改变;如果确定所述Web应用程序的Web组件信息未发生变化,则获取所述Web应用程序对应页面的内容信息,并根据所述内容信息确定所述Web应用程序是否发生了改变;如果确定该Web应用程序已更改,则调用预设的漏洞扫描引擎以对更改后的Web应用程序执行漏洞检测。实现Web应用程序的漏洞检测,提高了漏洞检测效率。

著录项

  • 公开/公告号WO2020019511A1

    专利类型

  • 公开/公告日2020-01-30

    原文格式PDF

  • 申请/专利权人 PING AN TECHNOLOGY (SHENZHEN) CO. LTD.;

    申请/专利号WO2018CN108673

  • 发明设计人 ZHOU DONGXU;

    申请日2018-09-29

  • 分类号H04L29/06;H04L29/08;

  • 国家 WO

  • 入库时间 2022-08-21 11:13:44

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号