发明名称 A knowledge-based and collaborative system for security assessment of web applications
摘要 A standardized system for assessing the security of web based applications which has a component for collecting information regarding threat and vulnerabilities to web applications is described. The system includes a component for organizing the information regarding threat and vulnerabilities to web applications into a uniform language so that the information is integrated throughout the entirety of the system. Further, the system has a component for expressing the information in a structured and uniform format of a hierarchical relationship between threat and vulnerabilities which includes threat vulnerability trees. The system includes a component for rating the threats and vulnerabilities under a uniform rating system. The system includes a component for integrating the information into both a storage component and also a presentation component for presenting the information. The presentation component presents the information in a graphical format which visually demonstrates the relationships between the threats and the vulnerabilities.
申请公布号 GB201004104(D0) 申请公布日期 2010.04.28
申请号 GB20100004104 申请日期 2008.08.13
申请人 BANK OF AMERICA CORPORATION 发明人
分类号 主分类号
代理机构 代理人
主权项
地址