发明名称 Formal Analysis of the Quality and Conformance of Information Flow Downgraders
摘要 Mechanisms for evaluating downgrader code in application code with regard to one or more security guidelines are provided. Downgrader code in application code is identified, where the downgrader code is a portion of code in the application code that operates on an information flow of the application code to ensure confidentiality of information input to the downgrader code, in the output of the downgrader code. Processes of the downgrader code are evaluated against security guidelines to determine if the processes violate the security guidelines. A notification is generated in response to the evaluation indicating that the processes of the downgrader code violate the security guidelines. The notification is output to a computing device for consideration.
申请公布号 US2012159619(A1) 申请公布日期 2012.06.21
申请号 US20100968646 申请日期 2010.12.15
申请人 BERG RYAN J.;PISTOIA MARCO;TATEISHI TAKAAKI;TEILHET STEPHEN D.;TRIPP OMER;INTERNATIONAL BUSINESS MACHINES CORPORATION 发明人 BERG RYAN J.;PISTOIA MARCO;TATEISHI TAKAAKI;TEILHET STEPHEN D.;TRIPP OMER
分类号 G06F21/00;G06F9/44 主分类号 G06F21/00
代理机构 代理人
主权项
地址