发明名称 METHOD FOR SOFTWARE VULNERABILITY FLOW ANALYSIS, GENERATION OF VULNERABILITY-COVERING CODE, AND MULTI-GENERATION OF FUNCTIONALLY-EQUIVALENT CODE
摘要 A method for detecting, analyzing, and mitigating vulnerabilities in software is provided. The method includes determining whether one or more vulnerabilities are present in one or more target software components, determining whether any detected vulnerabilities are fixable, and fixing the detected vulnerabilities that are fixable in code or in associated models used to generate code. A vulnerability-covering code is generated when one or more of the detected vulnerabilities are not fixable. A determination is then made whether there are any remaining vulnerabilities in the vulnerability-covering code. A vulnerability-aware diverse code is generated when there are one or more remaining vulnerabilities to obfuscate the remaining vulnerabilities.
申请公布号 US2011126288(A1) 申请公布日期 2011.05.26
申请号 US20090624790 申请日期 2009.11.24
申请人 HONEYWELL INTERNATIONAL INC. 发明人 SCHLOEGEL KIRK A.;BHATT DEVESH
分类号 G06F11/00;G06F9/44 主分类号 G06F11/00
代理机构 代理人
主权项
地址