首页> 外国专利> Generating vulnerability reports based on application binary interface/application programming interface usage

Generating vulnerability reports based on application binary interface/application programming interface usage

机译:根据应用程序二进制接口/应用程序编程接口的使用情况生成漏洞报告

摘要

A method for generating vulnerability reports based on application binary interface/application programming interface usage may include extracting, by a processing device, a binary file and a security report relating to a software program executed by the processing device, the security report having a vulnerability list of pending vulnerabilities relating to the software program, detecting, from the binary file, interface usage details associated with interfaces used by the software program and associated with shared libraries used by the software program, wherein the interfaces comprise application programming interfaces (APIs) corresponding to rules that the software program follows to access and use services and resources provided by another software program, matching the interface usage details with the pending vulnerabilities of the vulnerability list, and generating a vulnerability report based on the matching, wherein the vulnerability report comprises a list of the pending vulnerabilities based on their associated interface usage.
机译:一种基于应用程序二进制接口/应用程序编程接口使用情况来生成漏洞报告的方法,可以包括由处理设备提取二进制文件和与处理设备执行的软件程序有关的安全报告,该安全报告具有漏洞列表。与该软件程序有关的未决漏洞中,从二进制文件中检测与该软件程序使用的接口相关联并且与该软件程序使用的共享库相关联的接口使用情况详细信息,其中这些接口包括与以下内容有关的应用程序编程接口(API):软件程序遵循的规则,以访问和使用另一个软件程序提供的服务和资源,将接口使用情况的详细信息与漏洞列表的未决漏洞进行匹配,并根据匹配结果生成漏洞报告,其中漏洞报告包括一个列表未决的外伤基于其相关接口使用情况的功能。

著录项

  • 公开/公告号US8806649B2

    专利类型

  • 公开/公告日2014-08-12

    原文格式PDF

  • 申请/专利权人 RED HAT INC.;

    申请/专利号US201313936672

  • 发明设计人 KUSHAL DAS;

    申请日2013-07-08

  • 分类号G06F21/00;

  • 国家 US

  • 入库时间 2022-08-21 16:06:12

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号