首页> 外国专利> AUTOMATICALLY DETECTING VULNERABILITY REMEDIATIONS AND REGRESSIONS

AUTOMATICALLY DETECTING VULNERABILITY REMEDIATIONS AND REGRESSIONS

机译:自动检测漏洞补救和回归

摘要

A mechanism is described herein for automatically detecting vulnerability remediations and regressions. A system may receive data indicating that a security alert exists for a specific vulnerability. The system retrieves parameters from the alert and generates (or retrieves) a script or a set of scripts for detecting the vulnerability based on those parameters. The script is executed to determine whether the vulnerability has been remediated or has regressed post remediation. If the system determined that the vulnerability has been remediated, it transmits a request to resolve the security alert. The script is then continually or periodically executed. If the system, through executing the script, determines that the vulnerability has been reintroduced into the environment (e.g., via a code upgrade or a parameter update), it reopens the existing alert indicating that the vulnerability has been reintroduced into the environment.
机译:这里描述了一种机制,用于自动检测漏洞修复和回归。 系统可以接收指示特定漏洞存在安全警报的数据。 系统从警报中检索参数,并生成(或检索)脚本或一组脚本,用于基于这些参数检测漏洞。 执行脚本以确定漏洞是否已被修复或已退回的后修复。 如果系统确定已修复漏洞,则会传输解析安全警报的请求。 然后不断或定期执行该脚本。 如果系统通过执行脚本,则确定漏洞已被重新引入到环境中(例如,通过代码升级或参数更新),它重新打开现有警报,指示漏洞已被重新引入到环境中。

著录项

  • 公开/公告号US2021352096A1

    专利类型

  • 公开/公告日2021-11-11

    原文格式PDF

  • 申请/专利权人 UBER TECHNOLOGIES INC.;

    申请/专利号US202016867153

  • 发明设计人 AASTHA YADAV;MARTIN HRISTOV GEORGIEV;

    申请日2020-05-05

  • 分类号H04L29/06;

  • 国家 US

  • 入库时间 2024-06-14 22:21:24

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号