发明名称 System for determining web application vulnerabilities
摘要 A method for detecting security vulnerabilities in a web application includes analyzing the client requests and server responses resulting therefrom in order to discover pre-defined elements of the application's interface with external clients and the attributes of these elements. The client requests are then mutated based on a pre-defined set of mutation rules to thereby generate exploits unique to the application. The web application is attacked using the exploits and the results of the attack are evaluated for anomalous application activity.
申请公布号 US2002010855(A1) 申请公布日期 2002.01.24
申请号 US20010800090 申请日期 2001.03.05
申请人 RESHEF ERAN;EL-HANANY YUVAL;RAANAN GIL;TSARFATI TOM 发明人 RESHEF ERAN;EL-HANANY YUVAL;RAANAN GIL;TSARFATI TOM
分类号 G06F21/00;H04L29/06;(IPC1-7):H04K1/00;H04L9/00 主分类号 G06F21/00
代理机构 代理人
主权项
地址