发明名称 Method and Apparatus for Monitoring Malicious Link Injection Into Website Source Code
摘要 A method for monitoring malicious link injection into website source code, may include: monitoring a modification operation on a website source code file and obtaining a changed code segment; analyzing the changed code segment to extract an external link; determining whether the external link is a suspicious or malicious link; and sending an alarm message if it is determined that the external link is a suspicious or malicious link. According to the method for monitoring malicious link injection into website source code, changed content of source code can be monitored in real time, so as to effectively prevent a common type of virus transmission manner in which a malicious redirection website address is injected into page code of a legal website after a system write permission is obtained by using a vulnerability of an operating system or a third-party application. In addition, the present disclosure further provides a related apparatus.
申请公布号 US2015244738(A1) 申请公布日期 2015.08.27
申请号 US201514709641 申请日期 2015.05.12
申请人 TENCENT TECHNOLOGY (SHENZHEN) COMPANY LIMITED 发明人 Lu Sixi
分类号 H04L29/06;H04L29/08 主分类号 H04L29/06
代理机构 代理人
主权项 1. A method for monitoring malicious link injection into website source code, comprising: monitoring a modification operation on a website source code file and obtaining a changed code segment; analyzing the changed code segment to extract an external link; determining whether the external link is a suspicious or malicious link; and sending an alarm message if it is determined that the external link is a suspicious or malicious link.
地址 Shenzhen CN