发明名称 Technique for determining web services vulnerabilities and compliance
摘要 A technique for testing applications for vulnerabilities that may be as a result of loosely defined criteria and restrictions associated with interfacing to the applications. Interfaces associated with an application to be tested are identified. The interfaces may include the names of services provided by the application as well as parameters that are passed to the services. One or more mutant requests containing one or more mutations are then generated based on the identified interfaces. The application is then attacked by forwarding the mutant requests to the application. Vulnerabilities of the application that were exposed as a result of the attack are then detected.
申请公布号 US7849448(B2) 申请公布日期 2010.12.07
申请号 US20060438961 申请日期 2006.05.23
申请人 CROSSCHECK NETWORKS 发明人 YUNUS MAMOON;MALLAL RIZWAN
分类号 G06F9/44;G06F11/00;G06F12/14;G06F15/16 主分类号 G06F9/44
代理机构 代理人
主权项
地址