发明名称 |
System, Method, and Apparatus for Modular, String-Sensitive, Access Rights Analysis with Demand-Driven Precision |
摘要 |
A static analysis for identification of permission-requirements on stack-inspection authorization systems is provided. The analysis employs functional modularity for improved scalability. To enhance precision, the analysis utilizes program slicing to detect the origin of each parameter passed to a security-sensitive function. Furthermore, since strings are essential when defining permissions, the analysis integrates a sophisticated string analysis that models string computations. |
申请公布号 |
US2014026185(A1) |
申请公布日期 |
2014.01.23 |
申请号 |
US201314033503 |
申请日期 |
2013.09.22 |
申请人 |
INTERNATIONAL BUSINESS MACHINES CORPORATION |
发明人 |
DOLBY JULIAN TIMOTHY;GEAY EMMANUEL;PISTOIA MARCO;RYDER BARBARA G.;TATEISHI TAKAAKI |
分类号 |
G06F21/57 |
主分类号 |
G06F21/57 |
代理机构 |
|
代理人 |
|
主权项 |
|
地址 |
|