首页> 外国专利> Identifying stored security vulnerabilities in computer software applications

Identifying stored security vulnerabilities in computer software applications

机译:识别计算机软件应用程序中存储的安全漏洞

摘要

Identifying stored security vulnerabilities in computer software applications by providing via a first interface of a computer software application during execution of the computer software application, test data having a characteristic of a malicious payload, where an interaction performed with the first interface resulted in data being written to a location within a persistent data store, and where an interaction performed with a second interface of the computer software application resulted in data being read from the location within the persistent data store, and identifying a stored security vulnerability associated with the computer software application if the test data are written to the persistent data store at the location.
机译:通过在计算机软件应用程序执行期间通过计算机软件应用程序的第一接口提供具有恶意有效负载特征的测试数据,来识别计算机软件应用程序中存储的安全漏洞,其中与第一接口执行的交互导致数据被写入到持久性数据存储中的位置,并且与计算机软件应用程序的第二个界面进行交互导致从持久性数据存储中的位置读取数据,并在与计算机软件应用程序相关联的情况下识别存储的安全漏洞测试数据将写入该位置的持久数据存储中。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号