发明名称 CORRECTING WORKFLOW SECURITY VULNERABILITIES VIA STATIC ANALYSIS AND VIRTUAL PATCHING
摘要 A computer program can be statically analyzed to determine an order in which client side workflows are intended to be implemented by the computer program. A virtual patch can be generated. When executed by a processor, the virtual patch can track web service calls from a client to the computer program, and determine whether the order of the web service calls from the client to the computer program correlate to the order in which client side workflows are intended to be implemented by the computer program. If the order of the web service calls from the client to the computer program do not correlate to the order in which client side workflows are intended to be implemented by the computer program, an alert can be generated.
申请公布号 US2014096255(A1) 申请公布日期 2014.04.03
申请号 US201213629745 申请日期 2012.09.28
申请人 BUSINESS MACHINES CORPORATION INTERNATIONAL;INTERNATIONAL BUSINESS MACHINES CORPORATION 发明人 BESKROVNY EVGENY;TRIPP OMER
分类号 G06F21/00 主分类号 G06F21/00
代理机构 代理人
主权项
地址