发明名称 WEB APPLICATION ASSESSMENT BASED ON INTELLIGENT GENERATION OF ATTACK STRINGS
摘要 A web application is more efficiently analyzed by intelligently generating attack sequences to be used in the assessment. Rather than simply sending a canned list of static strings at a web application, the operation of the web application is analyzed to determine the filtering and acceptance characteristics of the web site. As this information is ascertained, a vocabulary of allowed symbols is created. This vocabulary is used in the building of attack strings and as such, the number of attack strings fired at the web application is greatly reduced, as well as the number of false positives.
申请公布号 US2008120722(A1) 申请公布日期 2008.05.22
申请号 US20060560969 申请日期 2006.11.17
申请人 SIMA CALEB;KELLY RAYMOND;HOFFMAN WILLIAM M 发明人 SIMA CALEB;KELLY RAYMOND;HOFFMAN WILLIAM M.
分类号 G06F21/00 主分类号 G06F21/00
代理机构 代理人
主权项
地址