发明名称 Method, system, and computer program product for computer system vulnerability analysis and fortification
摘要 A method, system, and computer program product for the automatic detection and fixing of security vulnerabilities in both individual software components and across complex, multi-component software solutions. The architecture of the software solution to be monitored is analyzed prior to its being monitored. Data derived from the analysis is used to proactively identify possible ways to attack the software solution. The software solution being monitored and the system on which it runs is periodically scanned, and attacks on it are attempted. A list of possible attacks is continuously updated, for example, in a manner similar to virus signatures provided by virus security companies, and a log is generated describing which attacks were successful and which ones failed.
申请公布号 US2005198527(A1) 申请公布日期 2005.09.08
申请号 US20040795776 申请日期 2004.03.08
申请人 INTERNATIONAL BUSINESS MACHINESS CORPORATION 发明人 JOHNSON DAVID P.;JOSHI NEERAJ R.;MILLER BRENT A.;RABINOVITZ DANIEL S.
分类号 H04L9/00;(IPC1-7):H04L9/00 主分类号 H04L9/00
代理机构 代理人
主权项
地址