首页> 外国专利> System and method for java deserialization vulnerability detection

System and method for java deserialization vulnerability detection

机译:Java Deserialization漏洞检测的系统和方法

摘要

A method for generating a deserialization vulnerability report of a Java project, includes: determining, by a computing device, if interior knowledge of the Java project is available, and when the interior knowledge of the Java project isn't available, performing a black box analysis to generate the deserialization vulnerability report; and when the interior knowledge of the Java project is available, determining by the computing device if source code of the Java project is accessible, when the source code of the Java project is accessible, performing a white box analysis to generate the deserialization vulnerability report, and when the source code of the Java project isn't accessible, performing a gray box analysis to generate the deserialization vulnerability report.
机译:一种用于生成Java项目的反序列化漏洞报告的方法,包括:通过计算设备确定Java项目的内部知识,并且当Java项目的内部知识不可用时,执行黑匣子分析生成反序列化漏洞报告;并且当Java项目的内部知识可用时,通过计算设备确定如果可访问Java项目的源代码,则可以访问Java项目的源代码,执行White Box分析以生成Deserialization漏洞报告,并且当Java项目的源代码无法访问时,执行灰框分析以生成Deserialization漏洞报告。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号