首页> 外国专利> DETECTION OF IPC-BASED MOBILE VULNERABILITIES DUE TO INSUFFICIENT CALLER PERMISSIONS

DETECTION OF IPC-BASED MOBILE VULNERABILITIES DUE TO INSUFFICIENT CALLER PERMISSIONS

机译:由于调用程序权限不足而检测到基于IPC的移动漏洞

摘要

Provided herein is a system, method, and computer program product for determining vulnerabilities in a target application of a mobile device. Determining vulnerabilities includes analyzing an inter-application communication interface of the target application to construct a list of incoming messages/Determining vulnerabilities also includes analyzing how the target application responds to message types of the incoming messages utilizing the list to associate caller permissions with the message types/In turn, determining the vulnerabilities of the target application can be based on discrepancies between the caller permissions and the message types.
机译:本文提供了一种用于确定移动设备的目标应用程序中的漏洞的系统,方法和计算机程序产品。确定漏洞包括分析目标应用程序的应用程序间通信接口以构建传入消息列表/确定漏洞还包括分析目标应用程序如何利用该列表将调用者权限与消息类型相关联来响应传入消息的消息类型反过来,可以基于调用者权限和消息类型之间的差异来确定目标应用程序的漏洞。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号