CN101017458A - Software safety code analyzer based on static analysis of source code and testing method therefor - Google Patents
Software safety code analyzer based on static analysis of source code and testing method therefor Download PDFInfo
- Publication number
- CN101017458A CN101017458A CN 200710064155 CN200710064155A CN101017458A CN 101017458 A CN101017458 A CN 101017458A CN 200710064155 CN200710064155 CN 200710064155 CN 200710064155 A CN200710064155 A CN 200710064155A CN 101017458 A CN101017458 A CN 101017458A
- Authority
- CN
- China
- Prior art keywords
- analysis
- security
- code
- analyzer
- software
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Granted
Links
- 238000004458 analytical method Methods 0.000 title claims abstract description 186
- 230000003068 static effect Effects 0.000 title claims abstract description 17
- 238000012360 testing method Methods 0.000 title description 9
- 238000001514 detection method Methods 0.000 claims abstract description 16
- 238000005206 flow analysis Methods 0.000 claims description 51
- 238000000034 method Methods 0.000 claims description 41
- 230000006870 function Effects 0.000 claims description 31
- 239000000872 buffer Substances 0.000 claims description 24
- 238000005516 engineering process Methods 0.000 claims description 21
- 239000000284 extract Substances 0.000 claims description 10
- 238000012545 processing Methods 0.000 claims description 8
- 238000010200 validation analysis Methods 0.000 claims description 8
- 238000011161 development Methods 0.000 claims description 6
- 238000002347 injection Methods 0.000 claims description 5
- 239000007924 injection Substances 0.000 claims description 5
- 230000006872 improvement Effects 0.000 claims description 4
- 238000004886 process control Methods 0.000 claims description 4
- 238000004364 calculation method Methods 0.000 claims description 3
- 238000005242 forging Methods 0.000 claims description 2
- 239000008186 active pharmaceutical agent Substances 0.000 claims 3
- 238000007781 pre-processing Methods 0.000 claims 1
- 238000011156 evaluation Methods 0.000 abstract 1
- 230000008569 process Effects 0.000 description 14
- 230000000875 corresponding effect Effects 0.000 description 12
- 241000700159 Rattus Species 0.000 description 9
- 238000000605 extraction Methods 0.000 description 9
- 238000010586 diagram Methods 0.000 description 6
- 238000004422 calculation algorithm Methods 0.000 description 4
- 238000013459 approach Methods 0.000 description 3
- 230000008901 benefit Effects 0.000 description 3
- 230000007812 deficiency Effects 0.000 description 3
- 238000007689 inspection Methods 0.000 description 3
- 239000007993 MOPS buffer Substances 0.000 description 2
- 238000012550 audit Methods 0.000 description 2
- 230000006399 behavior Effects 0.000 description 2
- 230000000295 complement effect Effects 0.000 description 2
- 230000001419 dependent effect Effects 0.000 description 2
- 230000009977 dual effect Effects 0.000 description 2
- 230000007246 mechanism Effects 0.000 description 2
- 238000011160 research Methods 0.000 description 2
- 238000012795 verification Methods 0.000 description 2
- 239000007799 cork Substances 0.000 description 1
- 230000002596 correlated effect Effects 0.000 description 1
- 230000008878 coupling Effects 0.000 description 1
- 238000010168 coupling process Methods 0.000 description 1
- 238000005859 coupling reaction Methods 0.000 description 1
- 230000000694 effects Effects 0.000 description 1
- 238000011835 investigation Methods 0.000 description 1
- 229920000126 latex Polymers 0.000 description 1
- 238000004215 lattice model Methods 0.000 description 1
- 238000013178 mathematical model Methods 0.000 description 1
- 239000000203 mixture Substances 0.000 description 1
- 238000012827 research and development Methods 0.000 description 1
- 239000000243 solution Substances 0.000 description 1
Images
Landscapes
- Debugging And Monitoring (AREA)
- Stored Programmes (AREA)
Abstract
一种基于源代码静态分析的软件安全代码分析器及其检测方法,软件安全代码分析器包括五个功能模块:代码解析器、代码分析引擎、安全风险报告器、安全规则库和用户接口,其中代码分析引擎由数据流分析器、控制流分析器、结构分析器、安全分析调度器及安全分析接口所组成,负责提取程序结构并通过基于全文的语法、语义来分析代码的安全问题;通过输入的源代码和代码的语法与语义,由该引擎分析代码的结构和关键特征,由此获取程序的安全风险并报告给用户。本发明根据输入的源程序,根据语法与语义,分析程序的结构与关键特征,从而获得程序的安全风险,并报告给用户;还可将代码分析结果通过报表,将发现的安全漏洞提交给用户进行审核与评估。
A software security code analyzer based on source code static analysis and its detection method. The software security code analyzer includes five functional modules: a code parser, a code analysis engine, a security risk reporter, a security rule base, and a user interface, wherein The code analysis engine is composed of a data flow analyzer, a control flow analyzer, a structure analyzer, a security analysis scheduler and a security analysis interface. The source code and the syntax and semantics of the code are analyzed by the engine to analyze the structure and key features of the code, thereby obtaining the security risks of the program and reporting them to the user. According to the input source program, the present invention analyzes the structure and key features of the program according to the grammar and semantics, thereby obtaining the security risk of the program and reporting it to the user; the code analysis result can also be submitted to the user through the report form to find the security loophole Conduct review and evaluation.
Description
Claims (8)
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CNB2007100641551A CN100461132C (en) | 2007-03-02 | 2007-03-02 | Software security code analyzer and detection method based on source code static analysis |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CNB2007100641551A CN100461132C (en) | 2007-03-02 | 2007-03-02 | Software security code analyzer and detection method based on source code static analysis |
Publications (2)
Publication Number | Publication Date |
---|---|
CN101017458A true CN101017458A (en) | 2007-08-15 |
CN100461132C CN100461132C (en) | 2009-02-11 |
Family
ID=38726482
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CNB2007100641551A Expired - Fee Related CN100461132C (en) | 2007-03-02 | 2007-03-02 | Software security code analyzer and detection method based on source code static analysis |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN100461132C (en) |
Cited By (165)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101377759B (en) * | 2008-08-26 | 2010-06-09 | 中国工商银行股份有限公司 | Automatic interface test system |
CN101286133B (en) * | 2008-06-02 | 2010-06-16 | 北京邮电大学 | Software Testing Method Using Interval Operation |
CN101894236A (en) * | 2010-07-28 | 2010-11-24 | 北京华夏信安科技有限公司 | Software Homology Detection Method and Device Based on Abstract Syntax Tree and Semantic Matching |
CN101894239A (en) * | 2010-08-12 | 2010-11-24 | 武汉大学 | Sensitive data audit distribution method and system based on evolution strategy |
CN102012895A (en) * | 2010-08-19 | 2011-04-13 | 上海酷吧信息技术有限公司 | Method for analyzing data |
CN102012991A (en) * | 2010-11-09 | 2011-04-13 | 北京神舟航天软件技术有限公司 | Static analysis-based checking method of safety rules of C language |
CN102073589A (en) * | 2010-12-29 | 2011-05-25 | 北京邮电大学 | Code static analysis-based data race detecting method and system thereof |
CN102073588A (en) * | 2010-12-28 | 2011-05-25 | 北京邮电大学 | Code static analysis based multithread deadlock detection method and system |
CN102148844A (en) * | 2010-02-09 | 2011-08-10 | 深圳市金蝶中间件有限公司 | Memory leak positioning method, server, client and system |
CN102193859A (en) * | 2010-03-03 | 2011-09-21 | 腾讯科技(深圳)有限公司 | Code analysis method and system |
CN102279792A (en) * | 2011-07-25 | 2011-12-14 | 大连理工大学 | Method for establishing security testing rule base based on extensive makeup language (XML) intermediate model |
CN102411690A (en) * | 2011-12-31 | 2012-04-11 | 中国信息安全测评中心 | Method and device for mining security vulnerabilities of application software under Android platform |
CN102419730A (en) * | 2011-12-08 | 2012-04-18 | 北京控制工程研究所 | Automatic checking method of safety coding rule of 51 assembly language software |
CN102426550A (en) * | 2011-10-26 | 2012-04-25 | 中国信息安全测评中心 | Source code analysis method and system |
CN102541614A (en) * | 2011-12-31 | 2012-07-04 | 南京师范大学 | Code analysis-based method for automatically analyzing input-output data of calculation module |
CN102629213A (en) * | 2012-02-21 | 2012-08-08 | 北京经纬恒润科技有限公司 | Analysis method and monitoring method for C language simulation model |
CN101901184B (en) * | 2009-05-31 | 2012-09-19 | 西门子(中国)有限公司 | Method, device and system for checking application program vulnerabilities |
CN102750220A (en) * | 2011-12-31 | 2012-10-24 | 中国信息安全测评中心 | Method and device for analyzing software source code security flaws |
CN101448007B (en) * | 2008-12-31 | 2012-11-21 | 中国电力科学研究院 | Attack prevention system based on structured query language (SQL) |
CN102799822A (en) * | 2012-07-11 | 2012-11-28 | 中国信息安全测评中心 | Software running security measurement and estimation method based on network environment |
CN102855183A (en) * | 2012-04-18 | 2013-01-02 | 清华大学 | Static test method and device for misquotation of inner variables by outer pointers |
CN102902820A (en) * | 2012-10-31 | 2013-01-30 | 华为技术有限公司 | Method and device for identifying database type |
CN102955914A (en) * | 2011-08-19 | 2013-03-06 | 百度在线网络技术(北京)有限公司 | Method and device for detecting security flaws of source files |
CN102968367A (en) * | 2012-08-28 | 2013-03-13 | 华南理工大学 | Static detection method on basis of embedded software and system thereof |
CN103077064A (en) * | 2012-12-31 | 2013-05-01 | 北京配天大富精密机械有限公司 | Method and interpretation device for analyzing and executing program language |
CN101446968B (en) * | 2008-12-10 | 2013-07-17 | 上海闻泰电子科技有限公司 | Method for parsing extend markup language |
CN103226488A (en) * | 2013-05-06 | 2013-07-31 | 中国农业银行股份有限公司 | Method and device for efficiency control in formalized code generation |
CN103257913A (en) * | 2013-04-18 | 2013-08-21 | 西安交通大学 | System and method for detecting and removing fault of software in operation |
CN103294598A (en) * | 2013-05-28 | 2013-09-11 | 华为技术有限公司 | Method and device for source code inspection |
CN103309747A (en) * | 2013-05-20 | 2013-09-18 | 青岛海信传媒网络技术有限公司 | Method and device for allocation of code file statistics task |
CN102272738B (en) * | 2008-12-29 | 2013-11-13 | Sk普兰尼特有限公司 | Method for separately executing software, apparatus, and computer-readable recording medium |
CN103870382A (en) * | 2012-12-10 | 2014-06-18 | 百度在线网络技术(北京)有限公司 | Code risk detection method and device |
CN103927473A (en) * | 2013-01-16 | 2014-07-16 | 广东电网公司信息中心 | Method, device and system for detecting source code safety of mobile intelligent terminal |
CN103927212A (en) * | 2013-01-11 | 2014-07-16 | 腾讯科技(深圳)有限公司 | Method and device for automatically analyzing source file information |
WO2015007166A1 (en) * | 2013-07-15 | 2015-01-22 | Tencent Technology (Shenzhen) Company Limited | Method and apparatus for detecting security vulnerability for animation source file |
CN104318162A (en) * | 2014-09-27 | 2015-01-28 | 深信服网络科技(深圳)有限公司 | Source code leakage detection method and device |
CN104462983A (en) * | 2013-09-22 | 2015-03-25 | 深圳市腾讯计算机系统有限公司 | PHP source code processing method and system |
CN104462981A (en) * | 2013-09-12 | 2015-03-25 | 深圳市腾讯计算机系统有限公司 | Detecting method and device for vulnerabilities |
CN104503917A (en) * | 2015-01-04 | 2015-04-08 | 牟永敏 | Method and system for analyzing change impact domain based on data flow function invoking path |
CN104572470A (en) * | 2015-01-26 | 2015-04-29 | 中国人民解放军理工大学 | Integer overflow fault detection method based on metamorphic relation |
CN104636252A (en) * | 2015-01-04 | 2015-05-20 | 浪潮软件股份有限公司 | Online code reviewing method and system based on SonarQube |
CN104662547A (en) * | 2012-10-19 | 2015-05-27 | 迈克菲股份有限公司 | Mobile application management |
CN101661543B (en) * | 2008-08-28 | 2015-06-17 | 西门子(中国)有限公司 | Method and device for detecting security flaws of software source codes |
CN104933368A (en) * | 2014-03-21 | 2015-09-23 | 腾讯科技(深圳)有限公司 | Network security vulnerability detection method and apparatus |
CN105022958A (en) * | 2015-07-11 | 2015-11-04 | 复旦大学 | Android application used application program vulnerability detection and analysis method based on code library security specifications |
CN105095079A (en) * | 2015-07-27 | 2015-11-25 | 电子科技大学 | Method and device for hot spot module instruction tracking |
CN105229661A (en) * | 2013-07-31 | 2016-01-06 | 惠普发展公司,有限责任合伙企业 | Malware is determined based on signal mark |
CN105278929A (en) * | 2014-06-16 | 2016-01-27 | 腾讯科技(深圳)有限公司 | Application program audit data processing method, device and system |
CN105302707A (en) * | 2014-06-06 | 2016-02-03 | 腾讯科技(深圳)有限公司 | Application vulnerability detection method and apparatus |
CN105335652A (en) * | 2015-11-24 | 2016-02-17 | 小米科技有限责任公司 | Debug method and debug device of application process of mobile terminal |
CN105354137A (en) * | 2015-09-30 | 2016-02-24 | 国家电网公司 | Static model detection method based on IEC61850 protocol |
CN105404584A (en) * | 2015-11-25 | 2016-03-16 | 广州博冠信息科技有限公司 | LPC static code inspection method, apparatus and system |
CN105786710A (en) * | 2016-03-22 | 2016-07-20 | 中国银行股份有限公司 | Program code review method and engine |
CN105867906A (en) * | 2016-03-22 | 2016-08-17 | 东南大学 | Software evolution-oriented code replaceability assessment method |
US9426177B2 (en) | 2013-07-15 | 2016-08-23 | Tencent Technology (Shenzhen) Company Limited | Method and apparatus for detecting security vulnerability for animation source file |
CN105893106A (en) * | 2016-04-25 | 2016-08-24 | 北京智能综电信息技术有限责任公司 | Alias analysis method of pointer in program |
CN105912381A (en) * | 2016-04-27 | 2016-08-31 | 华中科技大学 | Compile-time code security detection method based on rule base |
CN105956468A (en) * | 2016-04-22 | 2016-09-21 | 中国科学院信息工程研究所 | Method and system for detecting Android malicious application based on file access dynamic monitoring |
US9454659B1 (en) | 2014-08-15 | 2016-09-27 | Securisea, Inc. | Software vulnerabilities detection system and methods |
CN106033394A (en) * | 2015-03-13 | 2016-10-19 | 北京奇虎测腾科技有限公司 | Software source code analysis method and device |
CN106155892A (en) * | 2015-04-03 | 2016-11-23 | 腾讯科技(深圳)有限公司 | Judge method and the program test equipment of Application testing coverage |
CN106155880A (en) * | 2015-03-27 | 2016-11-23 | 中国科学院信息工程研究所 | A kind of automated procedures based on strategy analyze system and method |
CN106155893A (en) * | 2015-04-03 | 2016-11-23 | 腾讯科技(深圳)有限公司 | Judge method and the program test equipment of Application testing coverage |
CN106227812A (en) * | 2016-07-21 | 2016-12-14 | 杭州安恒信息技术有限公司 | A kind of auditing method of database object script security risk |
CN106295322A (en) * | 2016-07-26 | 2017-01-04 | 北京航空航天大学 | A kind of hardware protection model for buffer overflow attack |
CN106294156A (en) * | 2016-08-11 | 2017-01-04 | 北京邮电大学 | A kind of static code fault detection analysis method and device |
CN106339313A (en) * | 2016-08-12 | 2017-01-18 | 南京航空航天大学 | Method for automatically detecting inconsistency of Java API program exception and document description |
CN106354632A (en) * | 2016-08-24 | 2017-01-25 | 北京奇虎测腾科技有限公司 | Source code detecting system and method based on static analysis technology |
CN106371997A (en) * | 2016-09-07 | 2017-02-01 | 网易(杭州)网络有限公司 | Code checking method and device |
CN106372511A (en) * | 2016-08-24 | 2017-02-01 | 北京奇虎测腾安全技术有限公司 | Source code detection system and method |
CN106411855A (en) * | 2016-09-06 | 2017-02-15 | 北京邮电大学 | Vulnerability directory search method and apparatus |
CN106911686A (en) * | 2017-02-20 | 2017-06-30 | 杭州迪普科技股份有限公司 | WebShell detection methods and device |
CN106940647A (en) * | 2017-03-20 | 2017-07-11 | 广州视源电子科技股份有限公司 | Code management method and device |
CN106970819A (en) * | 2017-03-28 | 2017-07-21 | 清华大学 | A kind of c program code specification check device based on the regular description languages of PRDL |
CN107045477A (en) * | 2016-12-30 | 2017-08-15 | 上海富聪金融信息服务有限公司 | A kind of quality evaluation platform for carrying out various dimensions detection |
CN107103239A (en) * | 2017-04-10 | 2017-08-29 | 中国民生银行股份有限公司 | Source code based on application system business processing logic is gone beyond one's commission detection method and device |
CN107133518A (en) * | 2017-04-10 | 2017-09-05 | 中国民生银行股份有限公司 | Source code based on parameter and information flow is gone beyond one's commission detection method and device |
US9798981B2 (en) | 2013-07-31 | 2017-10-24 | Entit Software Llc | Determining malware based on signal tokens |
CN107315961A (en) * | 2017-07-11 | 2017-11-03 | 北京奇虎科技有限公司 | Bug detection method and device, computing device, storage medium |
US9813450B1 (en) | 2015-02-16 | 2017-11-07 | Amazon Technologies, Inc. | Metadata-based verification of artifact quality policy compliance |
US9824214B2 (en) | 2014-08-15 | 2017-11-21 | Securisea, Inc. | High performance software vulnerabilities detection system and methods |
CN107506304A (en) * | 2017-08-24 | 2017-12-22 | 方智林 | Code detection method, device, electronic equipment and storage medium |
CN107516040A (en) * | 2017-07-25 | 2017-12-26 | 中国人民解放军63928部队 | A Vulnerability Feature Analysis and Acquisition Method Based on Data Control Flow Graph |
CN107659555A (en) * | 2016-08-30 | 2018-02-02 | 北京长亭科技有限公司 | Detection method and device, terminal device and the computer-readable storage medium of network attack |
CN107704382A (en) * | 2017-09-07 | 2018-02-16 | 北京信息科技大学 | Towards Python function call path generating method and system |
CN107766728A (en) * | 2017-08-28 | 2018-03-06 | 国家电网公司 | Mobile application security managing device, method and mobile operation safety protection system |
CN107862327A (en) * | 2017-10-26 | 2018-03-30 | 华中科技大学 | A kind of safety defect identifying system and method based on multiple features |
CN107895115A (en) * | 2017-12-04 | 2018-04-10 | 北京元心科技有限公司 | Method and device for preventing stack overflow and terminal equipment |
CN107943481A (en) * | 2017-05-23 | 2018-04-20 | 清华大学 | C programmer code specification building method based on multi-model |
CN108132999A (en) * | 2017-12-21 | 2018-06-08 | 恒宝股份有限公司 | The processing method and system of a kind of masurium |
CN108153666A (en) * | 2016-12-06 | 2018-06-12 | 北京奇虎科技有限公司 | A kind of method and apparatus of resource reclaim loophole in static detection Android code |
CN108153664A (en) * | 2016-12-06 | 2018-06-12 | 北京奇虎科技有限公司 | A kind of static code scan method and device |
CN108459954A (en) * | 2017-02-22 | 2018-08-28 | 腾讯科技(深圳)有限公司 | Vulnerability of application program detection method and device |
CN103996006B (en) * | 2013-02-17 | 2018-09-04 | 中国移动通信集团山西有限公司 | A kind of method and apparatus of Evaluation of Information System Security Risk |
CN108595952A (en) * | 2018-03-30 | 2018-09-28 | 全球能源互联网研究院有限公司 | A kind of detection method and system of electric power mobile application software loophole |
CN108803561A (en) * | 2018-05-22 | 2018-11-13 | 广州明珞汽车装备有限公司 | The program automatic check method and system of program are controlled for white body wire body |
CN108874396A (en) * | 2018-05-31 | 2018-11-23 | 苏州蜗牛数字科技股份有限公司 | The cross-compiler and Compilation Method of multi-platform multiple target language based on HLSL |
CN109033843A (en) * | 2018-08-02 | 2018-12-18 | 南瑞集团有限公司 | Java file dependencies analysis method and module for distributed static detection system |
CN109246113A (en) * | 2018-09-21 | 2019-01-18 | 郑州云海信息技术有限公司 | A method and device for detecting SQL injection vulnerability in REST API |
CN109241104A (en) * | 2018-10-12 | 2019-01-18 | 北京聚云位智信息科技有限公司 | The resolver and its implementation of AISQL in decision type distributed data base system |
CN109426723A (en) * | 2017-09-01 | 2019-03-05 | 深圳市源伞新科技有限公司 | Use the detection method, system, equipment and storage medium of memory after release |
CN109471634A (en) * | 2018-08-28 | 2019-03-15 | 上海思立微电子科技有限公司 | The inspection method and equipment of source code format |
CN109784048A (en) * | 2018-12-12 | 2019-05-21 | 江苏大学 | A kind of stack buffer spilling vulnerability checking method based on programme diagram |
CN109857648A (en) * | 2019-01-14 | 2019-06-07 | 复旦大学 | A Change Pattern Mining Method for API Misuse |
CN109992970A (en) * | 2018-01-03 | 2019-07-09 | 北京京东尚科信息技术有限公司 | JAVA unserializing leakage location and method |
CN110069250A (en) * | 2019-04-30 | 2019-07-30 | 联陆智能交通科技(上海)有限公司 | LTE-V2X standard application layer data decoding method, system and medium |
CN110149800A (en) * | 2015-04-07 | 2019-08-20 | 华为技术有限公司 | It is a kind of for handling the device of abstract syntax tree associated with the source code of source program |
CN110188029A (en) * | 2019-03-15 | 2019-08-30 | 中山大学 | A Java Null Pointer Analysis System Based on Fixed Value Arrival Analysis Method |
CN110286891A (en) * | 2019-06-25 | 2019-09-27 | 中国科学院软件研究所 | A Program Source Code Encoding Method Based on Code Attribute Tensor |
CN110348226A (en) * | 2019-07-12 | 2019-10-18 | 北京字节跳动网络技术有限公司 | A kind of scan method of project file, device, electronic equipment and storage medium |
CN110377276A (en) * | 2019-07-19 | 2019-10-25 | 潍柴动力股份有限公司 | Source code file management method and equipment |
CN110399156A (en) * | 2019-07-26 | 2019-11-01 | 华东师范大学 | On-orbit upgrade method for aerospace software |
CN110532015A (en) * | 2019-07-26 | 2019-12-03 | 华东师范大学 | In-orbit upgrade-system towards Space Mission Software |
CN110618809A (en) * | 2019-08-08 | 2019-12-27 | 北京大学 | Front-end webpage input constraint extraction method and device |
TWI686170B (en) * | 2017-09-26 | 2020-03-01 | 美商蘋果公司 | Device for optical sensing and method for operating the device |
US10599852B2 (en) | 2014-08-15 | 2020-03-24 | Securisea, Inc. | High performance software vulnerabilities detection system and methods |
CN110990281A (en) * | 2019-12-04 | 2020-04-10 | 中国直升机设计研究所 | Automatic static analysis method |
CN111104335A (en) * | 2019-12-25 | 2020-05-05 | 清华大学 | A C language defect detection method and device based on multi-level analysis |
CN111240687A (en) * | 2020-01-09 | 2020-06-05 | 华东师范大学 | Source code static analysis device |
CN111240982A (en) * | 2020-01-09 | 2020-06-05 | 华东师范大学 | Source code static analysis method |
CN111309589A (en) * | 2019-11-29 | 2020-06-19 | 中国电力科学研究院有限公司 | Code security scanning system and method based on code dynamic analysis |
CN111382427A (en) * | 2020-01-06 | 2020-07-07 | 宁波中科天齐信息技术有限公司 | Buffer overflow detection method based on variable association rule |
CN111488155A (en) * | 2020-06-15 | 2020-08-04 | 完美世界(北京)软件科技发展有限公司 | Coloring language translation method |
CN111611153A (en) * | 2019-02-26 | 2020-09-01 | 阿里巴巴集团控股有限公司 | Method and device for detecting excessive drawing of user interface |
CN111611158A (en) * | 2020-05-08 | 2020-09-01 | 中国原子能科学研究院 | An application performance analysis system and method |
CN111709026A (en) * | 2020-06-10 | 2020-09-25 | Xc5香港有限公司 | Static security detection method, device, computer equipment and storage medium |
CN112100626A (en) * | 2020-09-24 | 2020-12-18 | 成都信息工程大学 | Development method for improving source code audit vulnerability hit rate |
CN112148581A (en) * | 2019-06-26 | 2020-12-29 | 北京京东尚科信息技术有限公司 | Code specification checking method, device, system and storage medium |
CN112148602A (en) * | 2020-09-17 | 2020-12-29 | 云南电网有限责任公司信息中心 | Source code security analysis method based on history optimization feature intelligent learning |
CN112162777A (en) * | 2020-09-27 | 2021-01-01 | 北京软安科技有限公司 | Source code feature extraction method and device |
CN112181858A (en) * | 2020-11-09 | 2021-01-05 | 东北大学 | Automatic detection method for Java software project dependent conflict semantic consistency |
CN112231212A (en) * | 2020-10-16 | 2021-01-15 | 湖南皖湘科技有限公司 | Method for detecting syntax error of program code |
CN112328256A (en) * | 2020-11-19 | 2021-02-05 | 四川创智联恒科技有限公司 | Method for automatically generating structure body parser source code |
CN112416337A (en) * | 2020-11-11 | 2021-02-26 | 北京京航计算通讯研究所 | Software architecture development system for aerospace embedded system |
CN112527674A (en) * | 2020-12-22 | 2021-03-19 | 苏州三六零智能安全科技有限公司 | Safety evaluation method, device, equipment and storage medium of AI (Artificial Intelligence) framework |
CN112597446A (en) * | 2020-12-14 | 2021-04-02 | 中国航发控制系统研究所 | Method for screening safety subset of safety key software modeling language |
CN112639745A (en) * | 2018-08-24 | 2021-04-09 | 甲骨文国际公司 | Scalable pre-analysis of dynamic applications |
CN112650675A (en) * | 2020-12-23 | 2021-04-13 | 广州汉全信息科技股份有限公司 | Code detection method and device of block chain and computer equipment |
CN112784290A (en) * | 2021-01-28 | 2021-05-11 | 湖北宸威玺链信息技术有限公司 | Data export tool security analysis method and system and data export method |
WO2021120538A1 (en) * | 2019-12-19 | 2021-06-24 | 支付宝(杭州)信息技术有限公司 | Applet code scanning method and apparatus |
US11050777B2 (en) | 2018-11-20 | 2021-06-29 | Saudi Arabian Oil Company | Method and system for remediating cybersecurity vulnerabilities based on utilization |
CN113220724A (en) * | 2014-12-19 | 2021-08-06 | 斯普兰克公司 | Data stream processing language for analytical instrumentation software |
CN113391817A (en) * | 2021-06-16 | 2021-09-14 | 中国海洋大学 | ANTLR 4-based header file replacement method and device |
CN113407442A (en) * | 2021-05-27 | 2021-09-17 | 杭州电子科技大学 | Pattern-based Python code memory leak detection method |
CN113742732A (en) * | 2020-05-27 | 2021-12-03 | 南京大学 | Code vulnerability scanning and positioning method |
CN113806715A (en) * | 2020-06-16 | 2021-12-17 | 上海交通大学 | Embedded device SDK security analysis method |
CN113869753A (en) * | 2021-09-30 | 2021-12-31 | 南京航空航天大学 | Security analysis method and device for IoT smart home situation |
CN114091018A (en) * | 2021-11-24 | 2022-02-25 | 安徽中科国创高可信软件有限公司 | Method and system for detecting C language program data leakage |
CN114595482A (en) * | 2022-03-10 | 2022-06-07 | 北京邮电大学 | Software source code privacy detection method and system based on static detection |
CN114816996A (en) * | 2022-03-28 | 2022-07-29 | 慧之安信息技术股份有限公司 | Code flow tracking method and system |
CN115062308A (en) * | 2022-05-31 | 2022-09-16 | 北京理工大学 | A method for detecting reentrancy vulnerabilities in smart contracts based on semantic analysis |
CN115167834A (en) * | 2022-09-08 | 2022-10-11 | 杭州新中大科技股份有限公司 | Automatic source code generation method and device based on code datamation |
CN115495745A (en) * | 2022-10-14 | 2022-12-20 | 国家工业信息安全发展研究中心 | Industrial software source code static detection method and system based on risk function |
CN115617352A (en) * | 2022-12-02 | 2023-01-17 | 中汽研软件测评(天津)有限公司 | C code detection method, equipment and storage medium based on safety coding standard |
CN115718696A (en) * | 2022-10-18 | 2023-02-28 | 国网智能电网研究院有限公司 | Source code cryptography misuse detection method, device, electronic device and storage medium |
CN115906094A (en) * | 2022-11-12 | 2023-04-04 | 杭州安恒信息技术股份有限公司 | Software security evaluation method and system and readable storage medium |
CN116340941A (en) * | 2023-02-09 | 2023-06-27 | 深圳开源互联网安全技术有限公司 | Static code scanning method, device, equipment and medium |
CN116756048A (en) * | 2023-08-16 | 2023-09-15 | 北京安普诺信息技术有限公司 | Code analysis method, device, computer equipment and storage medium |
CN116881926A (en) * | 2023-07-17 | 2023-10-13 | 耀通科技投资有限公司 | A risk scanning method, system and computing device based on device code |
WO2023197397A1 (en) * | 2022-04-13 | 2023-10-19 | 堡垒科技有限公司 | Decentralized trusted tokenization protocol for open source software |
US11809847B2 (en) | 2022-03-16 | 2023-11-07 | International Business Machines Corporation | Hardcoded string detection |
WO2023241046A1 (en) * | 2022-06-16 | 2023-12-21 | 中兴通讯股份有限公司 | Code management method and apparatus, and electronic device and storage medium |
CN117725576A (en) * | 2023-11-27 | 2024-03-19 | 国网山西省电力公司电力科学研究院 | An automated code audit method and system based on static analysis |
CN118349997A (en) * | 2024-03-25 | 2024-07-16 | 中国人民解放军61660部队 | A software backdoor determination method based on static code analysis |
CN119397969A (en) * | 2024-12-31 | 2025-02-07 | 北京开源芯片研究院 | Bus verification method, device, electronic device and readable storage medium |
Families Citing this family (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
WO2018222852A1 (en) | 2017-05-31 | 2018-12-06 | Shiftleft Inc. | System and method for application security profiling |
US10956574B2 (en) | 2017-10-07 | 2021-03-23 | Shiftleft Inc. | System and method for securing applications through an application-aware runtime agent |
US11074362B2 (en) | 2017-12-04 | 2021-07-27 | ShiftLeft, Inc. | System and method for code-based protection of sensitive data |
US11514172B2 (en) | 2018-11-15 | 2022-11-29 | Grabango Co. | System and method for information flow analysis of application code |
Family Cites Families (5)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
JPH0793144A (en) * | 1993-09-20 | 1995-04-07 | Fujitsu Ltd | Program analysis device |
US7047523B1 (en) * | 1999-06-02 | 2006-05-16 | Siemens Aktiengesellschaft | System for determining a total error description of at least one part of a computer program |
US7207065B2 (en) * | 2004-06-04 | 2007-04-17 | Fortify Software, Inc. | Apparatus and method for developing secure software |
US7549144B2 (en) * | 2005-02-22 | 2009-06-16 | Microsoft Corporation | Custom API modeling for source code static analysis simulator |
US20060212859A1 (en) * | 2005-03-18 | 2006-09-21 | Microsoft Corporation | System and method for generating XML-based language parser and writer |
-
2007
- 2007-03-02 CN CNB2007100641551A patent/CN100461132C/en not_active Expired - Fee Related
Cited By (258)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101286133B (en) * | 2008-06-02 | 2010-06-16 | 北京邮电大学 | Software Testing Method Using Interval Operation |
CN101377759B (en) * | 2008-08-26 | 2010-06-09 | 中国工商银行股份有限公司 | Automatic interface test system |
CN101661543B (en) * | 2008-08-28 | 2015-06-17 | 西门子(中国)有限公司 | Method and device for detecting security flaws of software source codes |
CN101446968B (en) * | 2008-12-10 | 2013-07-17 | 上海闻泰电子科技有限公司 | Method for parsing extend markup language |
CN102272738B (en) * | 2008-12-29 | 2013-11-13 | Sk普兰尼特有限公司 | Method for separately executing software, apparatus, and computer-readable recording medium |
CN101448007B (en) * | 2008-12-31 | 2012-11-21 | 中国电力科学研究院 | Attack prevention system based on structured query language (SQL) |
CN101901184B (en) * | 2009-05-31 | 2012-09-19 | 西门子(中国)有限公司 | Method, device and system for checking application program vulnerabilities |
CN102148844A (en) * | 2010-02-09 | 2011-08-10 | 深圳市金蝶中间件有限公司 | Memory leak positioning method, server, client and system |
CN102148844B (en) * | 2010-02-09 | 2014-08-27 | 深圳市金蝶中间件有限公司 | Memory leak positioning method, server, client and system |
CN102193859A (en) * | 2010-03-03 | 2011-09-21 | 腾讯科技(深圳)有限公司 | Code analysis method and system |
CN102193859B (en) * | 2010-03-03 | 2014-09-10 | 深圳市世纪光速信息技术有限公司 | Code analysis method and system |
CN101894236A (en) * | 2010-07-28 | 2010-11-24 | 北京华夏信安科技有限公司 | Software Homology Detection Method and Device Based on Abstract Syntax Tree and Semantic Matching |
CN101894239A (en) * | 2010-08-12 | 2010-11-24 | 武汉大学 | Sensitive data audit distribution method and system based on evolution strategy |
CN102012895A (en) * | 2010-08-19 | 2011-04-13 | 上海酷吧信息技术有限公司 | Method for analyzing data |
CN102012991A (en) * | 2010-11-09 | 2011-04-13 | 北京神舟航天软件技术有限公司 | Static analysis-based checking method of safety rules of C language |
CN102073588B (en) * | 2010-12-28 | 2013-11-20 | 北京邮电大学 | Code static analysis based multithread deadlock detection method and system |
CN102073588A (en) * | 2010-12-28 | 2011-05-25 | 北京邮电大学 | Code static analysis based multithread deadlock detection method and system |
CN102073589B (en) * | 2010-12-29 | 2013-07-03 | 北京邮电大学 | Code static analysis-based data race detecting method and system thereof |
CN102073589A (en) * | 2010-12-29 | 2011-05-25 | 北京邮电大学 | Code static analysis-based data race detecting method and system thereof |
CN102279792A (en) * | 2011-07-25 | 2011-12-14 | 大连理工大学 | Method for establishing security testing rule base based on extensive makeup language (XML) intermediate model |
CN102955914B (en) * | 2011-08-19 | 2015-11-25 | 百度在线网络技术(北京)有限公司 | The detection method of one source file security breaches and pick-up unit |
CN102955914A (en) * | 2011-08-19 | 2013-03-06 | 百度在线网络技术(北京)有限公司 | Method and device for detecting security flaws of source files |
CN102426550B (en) * | 2011-10-26 | 2014-05-14 | 中国信息安全测评中心 | Source code analysis method and system |
CN102426550A (en) * | 2011-10-26 | 2012-04-25 | 中国信息安全测评中心 | Source code analysis method and system |
CN102419730A (en) * | 2011-12-08 | 2012-04-18 | 北京控制工程研究所 | Automatic checking method of safety coding rule of 51 assembly language software |
CN102541614A (en) * | 2011-12-31 | 2012-07-04 | 南京师范大学 | Code analysis-based method for automatically analyzing input-output data of calculation module |
CN102541614B (en) * | 2011-12-31 | 2014-05-28 | 南京师范大学 | Code analysis-based method for automatically analyzing input-output data of calculation module |
CN102750220B (en) * | 2011-12-31 | 2015-06-17 | 中国信息安全测评中心 | Method and device for analyzing security defects of software source codes |
CN102411690B (en) * | 2011-12-31 | 2014-07-23 | 中国信息安全测评中心 | Method and device for mining security vulnerabilities of application software under Android platform |
CN102411690A (en) * | 2011-12-31 | 2012-04-11 | 中国信息安全测评中心 | Method and device for mining security vulnerabilities of application software under Android platform |
CN102750220A (en) * | 2011-12-31 | 2012-10-24 | 中国信息安全测评中心 | Method and device for analyzing software source code security flaws |
CN102629213A (en) * | 2012-02-21 | 2012-08-08 | 北京经纬恒润科技有限公司 | Analysis method and monitoring method for C language simulation model |
CN102629213B (en) * | 2012-02-21 | 2015-02-04 | 北京经纬恒润科技有限公司 | Analysis method and monitoring method for C language simulation model |
CN102855183A (en) * | 2012-04-18 | 2013-01-02 | 清华大学 | Static test method and device for misquotation of inner variables by outer pointers |
CN102799822B (en) * | 2012-07-11 | 2015-06-17 | 中国信息安全测评中心 | Software running security measurement and estimation method based on network environment |
CN102799822A (en) * | 2012-07-11 | 2012-11-28 | 中国信息安全测评中心 | Software running security measurement and estimation method based on network environment |
CN102968367A (en) * | 2012-08-28 | 2013-03-13 | 华南理工大学 | Static detection method on basis of embedded software and system thereof |
US10114950B2 (en) | 2012-10-19 | 2018-10-30 | McAFEE, LLC. | Mobile application management |
US11157616B2 (en) | 2012-10-19 | 2021-10-26 | Mcafee, Llc | Mobile application management |
CN104662547A (en) * | 2012-10-19 | 2015-05-27 | 迈克菲股份有限公司 | Mobile application management |
CN102902820A (en) * | 2012-10-31 | 2013-01-30 | 华为技术有限公司 | Method and device for identifying database type |
CN102902820B (en) * | 2012-10-31 | 2015-09-09 | 华为技术有限公司 | The recognition methods of type of database and device |
CN103870382A (en) * | 2012-12-10 | 2014-06-18 | 百度在线网络技术(北京)有限公司 | Code risk detection method and device |
CN103870382B (en) * | 2012-12-10 | 2018-11-09 | 百度在线网络技术(北京)有限公司 | A kind of detection method and device of code risk |
CN103077064B (en) * | 2012-12-31 | 2016-03-02 | 北京配天技术有限公司 | A kind of parsing also executive language method and interpreting means |
CN103077064A (en) * | 2012-12-31 | 2013-05-01 | 北京配天大富精密机械有限公司 | Method and interpretation device for analyzing and executing program language |
CN103927212B (en) * | 2013-01-11 | 2018-06-12 | 腾讯科技(深圳)有限公司 | Automatically analyze the method and device of source file information |
CN103927212A (en) * | 2013-01-11 | 2014-07-16 | 腾讯科技(深圳)有限公司 | Method and device for automatically analyzing source file information |
CN103927473A (en) * | 2013-01-16 | 2014-07-16 | 广东电网公司信息中心 | Method, device and system for detecting source code safety of mobile intelligent terminal |
CN103996006B (en) * | 2013-02-17 | 2018-09-04 | 中国移动通信集团山西有限公司 | A kind of method and apparatus of Evaluation of Information System Security Risk |
CN103257913A (en) * | 2013-04-18 | 2013-08-21 | 西安交通大学 | System and method for detecting and removing fault of software in operation |
CN103257913B (en) * | 2013-04-18 | 2015-10-28 | 西安交通大学 | Software fault detection removal system and method during a kind of operation |
CN103226488A (en) * | 2013-05-06 | 2013-07-31 | 中国农业银行股份有限公司 | Method and device for efficiency control in formalized code generation |
CN103226488B (en) * | 2013-05-06 | 2016-08-24 | 中国农业银行股份有限公司 | A kind of efficiency control method formalized in code building and device |
CN103309747B (en) * | 2013-05-20 | 2016-09-28 | 青岛海信传媒网络技术有限公司 | The distribution method of a kind of code file statistics task and device |
CN103309747A (en) * | 2013-05-20 | 2013-09-18 | 青岛海信传媒网络技术有限公司 | Method and device for allocation of code file statistics task |
CN103294598B (en) * | 2013-05-28 | 2016-02-03 | 华为技术有限公司 | A kind of source code inspection method and device |
CN103294598A (en) * | 2013-05-28 | 2013-09-11 | 华为技术有限公司 | Method and device for source code inspection |
US9426177B2 (en) | 2013-07-15 | 2016-08-23 | Tencent Technology (Shenzhen) Company Limited | Method and apparatus for detecting security vulnerability for animation source file |
WO2015007166A1 (en) * | 2013-07-15 | 2015-01-22 | Tencent Technology (Shenzhen) Company Limited | Method and apparatus for detecting security vulnerability for animation source file |
CN105229661A (en) * | 2013-07-31 | 2016-01-06 | 惠普发展公司,有限责任合伙企业 | Malware is determined based on signal mark |
CN105229661B (en) * | 2013-07-31 | 2018-10-09 | 安提特软件有限责任公司 | Method, computing device and the storage medium for determining Malware are marked based on signal |
US9798981B2 (en) | 2013-07-31 | 2017-10-24 | Entit Software Llc | Determining malware based on signal tokens |
CN105431859A (en) * | 2013-07-31 | 2016-03-23 | 惠普发展公司,有限责任合伙企业 | Signal flags indicating malware |
CN104462981B (en) * | 2013-09-12 | 2019-01-04 | 深圳市腾讯计算机系统有限公司 | leak detection method and device |
CN104462981A (en) * | 2013-09-12 | 2015-03-25 | 深圳市腾讯计算机系统有限公司 | Detecting method and device for vulnerabilities |
CN104462983B (en) * | 2013-09-22 | 2019-04-26 | 深圳市腾讯计算机系统有限公司 | A kind of PHP source code processing method and system |
CN104462983A (en) * | 2013-09-22 | 2015-03-25 | 深圳市腾讯计算机系统有限公司 | PHP source code processing method and system |
CN104933368A (en) * | 2014-03-21 | 2015-09-23 | 腾讯科技(深圳)有限公司 | Network security vulnerability detection method and apparatus |
CN105302707B (en) * | 2014-06-06 | 2019-01-08 | 腾讯科技(深圳)有限公司 | The leak detection method and device of application program |
CN105302707A (en) * | 2014-06-06 | 2016-02-03 | 腾讯科技(深圳)有限公司 | Application vulnerability detection method and apparatus |
CN105278929A (en) * | 2014-06-16 | 2016-01-27 | 腾讯科技(深圳)有限公司 | Application program audit data processing method, device and system |
US10599852B2 (en) | 2014-08-15 | 2020-03-24 | Securisea, Inc. | High performance software vulnerabilities detection system and methods |
US9824214B2 (en) | 2014-08-15 | 2017-11-21 | Securisea, Inc. | High performance software vulnerabilities detection system and methods |
US9715593B2 (en) | 2014-08-15 | 2017-07-25 | Securisea, Inc. | Software vulnerabilities detection system and methods |
US9454659B1 (en) | 2014-08-15 | 2016-09-27 | Securisea, Inc. | Software vulnerabilities detection system and methods |
CN104318162A (en) * | 2014-09-27 | 2015-01-28 | 深信服网络科技(深圳)有限公司 | Source code leakage detection method and device |
CN113220724A (en) * | 2014-12-19 | 2021-08-06 | 斯普兰克公司 | Data stream processing language for analytical instrumentation software |
CN113220724B (en) * | 2014-12-19 | 2024-04-16 | 斯普兰克公司 | Method, system and computer readable storage medium for processing a data stream |
CN104503917A (en) * | 2015-01-04 | 2015-04-08 | 牟永敏 | Method and system for analyzing change impact domain based on data flow function invoking path |
CN104636252A (en) * | 2015-01-04 | 2015-05-20 | 浪潮软件股份有限公司 | Online code reviewing method and system based on SonarQube |
CN104503917B (en) * | 2015-01-04 | 2017-07-07 | 牟永敏 | Change domain of influence analysis method and system based on data flow function call path |
CN104572470A (en) * | 2015-01-26 | 2015-04-29 | 中国人民解放军理工大学 | Integer overflow fault detection method based on metamorphic relation |
CN104572470B (en) * | 2015-01-26 | 2017-10-03 | 中国人民解放军理工大学 | A kind of integer overflow fault detection method based on transformation relation |
US9813450B1 (en) | 2015-02-16 | 2017-11-07 | Amazon Technologies, Inc. | Metadata-based verification of artifact quality policy compliance |
CN106033394B (en) * | 2015-03-13 | 2019-05-17 | 北京奇虎测腾科技有限公司 | The analysis method and device of software source code |
CN106033394A (en) * | 2015-03-13 | 2016-10-19 | 北京奇虎测腾科技有限公司 | Software source code analysis method and device |
CN106155880B (en) * | 2015-03-27 | 2019-07-30 | 中国科学院信息工程研究所 | A kind of automated procedures analysis system and method based on strategy |
CN106155880A (en) * | 2015-03-27 | 2016-11-23 | 中国科学院信息工程研究所 | A kind of automated procedures based on strategy analyze system and method |
CN106155893A (en) * | 2015-04-03 | 2016-11-23 | 腾讯科技(深圳)有限公司 | Judge method and the program test equipment of Application testing coverage |
CN106155893B (en) * | 2015-04-03 | 2021-03-02 | 腾讯科技(深圳)有限公司 | Method for judging application program test coverage and program test equipment |
CN106155892A (en) * | 2015-04-03 | 2016-11-23 | 腾讯科技(深圳)有限公司 | Judge method and the program test equipment of Application testing coverage |
CN110149800B (en) * | 2015-04-07 | 2021-12-14 | 华为技术有限公司 | An apparatus for processing an abstract syntax tree associated with source code of a source program |
CN110149800A (en) * | 2015-04-07 | 2019-08-20 | 华为技术有限公司 | It is a kind of for handling the device of abstract syntax tree associated with the source code of source program |
CN105022958A (en) * | 2015-07-11 | 2015-11-04 | 复旦大学 | Android application used application program vulnerability detection and analysis method based on code library security specifications |
CN105022958B (en) * | 2015-07-11 | 2018-01-12 | 复旦大学 | Vulnerability of application program determination method based on code library secure protocol in a kind of Android application |
CN105095079A (en) * | 2015-07-27 | 2015-11-25 | 电子科技大学 | Method and device for hot spot module instruction tracking |
CN105354137B (en) * | 2015-09-30 | 2018-03-02 | 国家电网公司 | A kind of static models detection method based on IEC61850 agreements |
CN105354137A (en) * | 2015-09-30 | 2016-02-24 | 国家电网公司 | Static model detection method based on IEC61850 protocol |
CN105335652A (en) * | 2015-11-24 | 2016-02-17 | 小米科技有限责任公司 | Debug method and debug device of application process of mobile terminal |
CN105335652B (en) * | 2015-11-24 | 2018-07-31 | 小米科技有限责任公司 | The adjustment method and device of mobile terminal application process |
CN105404584A (en) * | 2015-11-25 | 2016-03-16 | 广州博冠信息科技有限公司 | LPC static code inspection method, apparatus and system |
CN105404584B (en) * | 2015-11-25 | 2018-12-11 | 广州博冠信息科技有限公司 | LPC static code inspection method, device and system |
CN105867906B (en) * | 2016-03-22 | 2018-11-27 | 东南大学 | A kind of code replaceability appraisal procedure that software-oriented develops |
CN105786710A (en) * | 2016-03-22 | 2016-07-20 | 中国银行股份有限公司 | Program code review method and engine |
CN105786710B (en) * | 2016-03-22 | 2018-10-16 | 中国银行股份有限公司 | A kind of program code check method and engine |
CN105867906A (en) * | 2016-03-22 | 2016-08-17 | 东南大学 | Software evolution-oriented code replaceability assessment method |
CN105956468A (en) * | 2016-04-22 | 2016-09-21 | 中国科学院信息工程研究所 | Method and system for detecting Android malicious application based on file access dynamic monitoring |
CN105956468B (en) * | 2016-04-22 | 2018-12-28 | 中国科学院信息工程研究所 | A kind of Android malicious application detection method and system based on file access dynamic monitoring |
CN105893106B (en) * | 2016-04-25 | 2019-04-16 | 北京智能综电信息技术有限责任公司 | A kind of Pointer Alias Analysis method in program |
CN105893106A (en) * | 2016-04-25 | 2016-08-24 | 北京智能综电信息技术有限责任公司 | Alias analysis method of pointer in program |
CN105912381A (en) * | 2016-04-27 | 2016-08-31 | 华中科技大学 | Compile-time code security detection method based on rule base |
CN106227812A (en) * | 2016-07-21 | 2016-12-14 | 杭州安恒信息技术有限公司 | A kind of auditing method of database object script security risk |
CN106227812B (en) * | 2016-07-21 | 2019-06-21 | 杭州安恒信息技术股份有限公司 | An audit method for database object script security risk |
CN106295322A (en) * | 2016-07-26 | 2017-01-04 | 北京航空航天大学 | A kind of hardware protection model for buffer overflow attack |
CN106295322B (en) * | 2016-07-26 | 2018-12-18 | 北京航空航天大学 | A kind of hardware protection device for buffer overflow attack |
CN106294156A (en) * | 2016-08-11 | 2017-01-04 | 北京邮电大学 | A kind of static code fault detection analysis method and device |
CN106294156B (en) * | 2016-08-11 | 2018-12-07 | 北京邮电大学 | A kind of static code fault detection analysis method and device |
CN106339313A (en) * | 2016-08-12 | 2017-01-18 | 南京航空航天大学 | Method for automatically detecting inconsistency of Java API program exception and document description |
CN106339313B (en) * | 2016-08-12 | 2018-10-12 | 南京航空航天大学 | A kind of abnormal inconsistent automatic testing method of description with document of Java api routines |
CN106354632A (en) * | 2016-08-24 | 2017-01-25 | 北京奇虎测腾科技有限公司 | Source code detecting system and method based on static analysis technology |
CN106354632B (en) * | 2016-08-24 | 2019-03-12 | 北京奇虎测腾安全技术有限公司 | A source code detection system and method based on static analysis technology |
CN106372511A (en) * | 2016-08-24 | 2017-02-01 | 北京奇虎测腾安全技术有限公司 | Source code detection system and method |
CN107659555A (en) * | 2016-08-30 | 2018-02-02 | 北京长亭科技有限公司 | Detection method and device, terminal device and the computer-readable storage medium of network attack |
CN106411855A (en) * | 2016-09-06 | 2017-02-15 | 北京邮电大学 | Vulnerability directory search method and apparatus |
CN106411855B (en) * | 2016-09-06 | 2019-03-05 | 北京邮电大学 | A kind of fragility directory search method and device |
CN106371997B (en) * | 2016-09-07 | 2020-01-10 | 网易(杭州)网络有限公司 | Code checking method and device |
CN106371997A (en) * | 2016-09-07 | 2017-02-01 | 网易(杭州)网络有限公司 | Code checking method and device |
CN108153664A (en) * | 2016-12-06 | 2018-06-12 | 北京奇虎科技有限公司 | A kind of static code scan method and device |
CN108153666A (en) * | 2016-12-06 | 2018-06-12 | 北京奇虎科技有限公司 | A kind of method and apparatus of resource reclaim loophole in static detection Android code |
CN108153666B (en) * | 2016-12-06 | 2023-05-26 | 三六零科技集团有限公司 | A method and device for statically detecting resource recovery vulnerabilities in Android code |
CN107045477A (en) * | 2016-12-30 | 2017-08-15 | 上海富聪金融信息服务有限公司 | A kind of quality evaluation platform for carrying out various dimensions detection |
CN106911686B (en) * | 2017-02-20 | 2020-07-07 | 杭州迪普科技股份有限公司 | WebShell detection method and device |
CN106911686A (en) * | 2017-02-20 | 2017-06-30 | 杭州迪普科技股份有限公司 | WebShell detection methods and device |
CN108459954A (en) * | 2017-02-22 | 2018-08-28 | 腾讯科技(深圳)有限公司 | Vulnerability of application program detection method and device |
CN108459954B (en) * | 2017-02-22 | 2022-08-26 | 腾讯科技(深圳)有限公司 | Application program vulnerability detection method and device |
CN106940647A (en) * | 2017-03-20 | 2017-07-11 | 广州视源电子科技股份有限公司 | Code management method and device |
CN106940647B (en) * | 2017-03-20 | 2020-09-04 | 广州视源电子科技股份有限公司 | Code management method and device |
CN106970819A (en) * | 2017-03-28 | 2017-07-21 | 清华大学 | A kind of c program code specification check device based on the regular description languages of PRDL |
CN107133518B (en) * | 2017-04-10 | 2019-09-24 | 中国民生银行股份有限公司 | Source code based on parameter and information flow is gone beyond one's commission detection method and device |
CN107133518A (en) * | 2017-04-10 | 2017-09-05 | 中国民生银行股份有限公司 | Source code based on parameter and information flow is gone beyond one's commission detection method and device |
CN107103239B (en) * | 2017-04-10 | 2019-11-12 | 中国民生银行股份有限公司 | Source code unauthorized detection method and device based on application system business processing logic |
CN107103239A (en) * | 2017-04-10 | 2017-08-29 | 中国民生银行股份有限公司 | Source code based on application system business processing logic is gone beyond one's commission detection method and device |
CN107943481A (en) * | 2017-05-23 | 2018-04-20 | 清华大学 | C programmer code specification building method based on multi-model |
CN107315961B (en) * | 2017-07-11 | 2020-06-23 | 北京奇虎科技有限公司 | Program vulnerability detection method and device, computing device, and storage medium |
CN107315961A (en) * | 2017-07-11 | 2017-11-03 | 北京奇虎科技有限公司 | Bug detection method and device, computing device, storage medium |
CN107516040A (en) * | 2017-07-25 | 2017-12-26 | 中国人民解放军63928部队 | A Vulnerability Feature Analysis and Acquisition Method Based on Data Control Flow Graph |
CN107506304A (en) * | 2017-08-24 | 2017-12-22 | 方智林 | Code detection method, device, electronic equipment and storage medium |
CN107766728A (en) * | 2017-08-28 | 2018-03-06 | 国家电网公司 | Mobile application security managing device, method and mobile operation safety protection system |
CN109426723A (en) * | 2017-09-01 | 2019-03-05 | 深圳市源伞新科技有限公司 | Use the detection method, system, equipment and storage medium of memory after release |
CN109426723B (en) * | 2017-09-01 | 2020-12-22 | 深圳市源伞新科技有限公司 | Detection method, system, equipment and storage medium using released memory |
CN107704382B (en) * | 2017-09-07 | 2020-09-25 | 北京信息科技大学 | Python-oriented function call path generation method and system |
CN107704382A (en) * | 2017-09-07 | 2018-02-16 | 北京信息科技大学 | Towards Python function call path generating method and system |
TWI686170B (en) * | 2017-09-26 | 2020-03-01 | 美商蘋果公司 | Device for optical sensing and method for operating the device |
CN107862327A (en) * | 2017-10-26 | 2018-03-30 | 华中科技大学 | A kind of safety defect identifying system and method based on multiple features |
CN107862327B (en) * | 2017-10-26 | 2020-07-24 | 华中科技大学 | Security defect identification system and method based on multiple features |
CN107895115A (en) * | 2017-12-04 | 2018-04-10 | 北京元心科技有限公司 | Method and device for preventing stack overflow and terminal equipment |
CN107895115B (en) * | 2017-12-04 | 2021-01-29 | 北京元心科技有限公司 | Method and device for preventing stack overflow and terminal equipment |
CN108132999A (en) * | 2017-12-21 | 2018-06-08 | 恒宝股份有限公司 | The processing method and system of a kind of masurium |
CN109992970A (en) * | 2018-01-03 | 2019-07-09 | 北京京东尚科信息技术有限公司 | JAVA unserializing leakage location and method |
CN109992970B (en) * | 2018-01-03 | 2023-09-26 | 北京京东尚科信息技术有限公司 | JAVA deserialization vulnerability detection system and method |
CN108595952A (en) * | 2018-03-30 | 2018-09-28 | 全球能源互联网研究院有限公司 | A kind of detection method and system of electric power mobile application software loophole |
CN108803561B (en) * | 2018-05-22 | 2020-03-17 | 广州明珞汽车装备有限公司 | Program automatic checking method and system for body-in-white line body control program |
CN108803561A (en) * | 2018-05-22 | 2018-11-13 | 广州明珞汽车装备有限公司 | The program automatic check method and system of program are controlled for white body wire body |
CN108874396A (en) * | 2018-05-31 | 2018-11-23 | 苏州蜗牛数字科技股份有限公司 | The cross-compiler and Compilation Method of multi-platform multiple target language based on HLSL |
CN109033843B (en) * | 2018-08-02 | 2022-06-10 | 南瑞集团有限公司 | Java File Dependency Analysis Method and Module for Distributed Static Detection System |
CN109033843A (en) * | 2018-08-02 | 2018-12-18 | 南瑞集团有限公司 | Java file dependencies analysis method and module for distributed static detection system |
CN112639745B (en) * | 2018-08-24 | 2025-02-25 | 甲骨文国际公司 | Scalable pre-analysis for dynamic applications |
CN112639745A (en) * | 2018-08-24 | 2021-04-09 | 甲骨文国际公司 | Scalable pre-analysis of dynamic applications |
CN109471634B (en) * | 2018-08-28 | 2021-11-16 | 上海思立微电子科技有限公司 | Method and device for checking source code format |
CN109471634A (en) * | 2018-08-28 | 2019-03-15 | 上海思立微电子科技有限公司 | The inspection method and equipment of source code format |
CN109246113B (en) * | 2018-09-21 | 2021-08-10 | 郑州云海信息技术有限公司 | REST API SQL injection vulnerability detection method and device |
CN109246113A (en) * | 2018-09-21 | 2019-01-18 | 郑州云海信息技术有限公司 | A method and device for detecting SQL injection vulnerability in REST API |
CN109241104B (en) * | 2018-10-12 | 2021-11-02 | 北京聚云位智信息科技有限公司 | AISQL resolver in decision-making distributed database system and implementation method thereof |
CN109241104A (en) * | 2018-10-12 | 2019-01-18 | 北京聚云位智信息科技有限公司 | The resolver and its implementation of AISQL in decision type distributed data base system |
US11050777B2 (en) | 2018-11-20 | 2021-06-29 | Saudi Arabian Oil Company | Method and system for remediating cybersecurity vulnerabilities based on utilization |
CN109784048B (en) * | 2018-12-12 | 2023-12-01 | 天航长鹰(江苏)科技有限公司 | Method for detecting overflow vulnerability of stack buffer based on program diagram |
CN109784048A (en) * | 2018-12-12 | 2019-05-21 | 江苏大学 | A kind of stack buffer spilling vulnerability checking method based on programme diagram |
CN109857648A (en) * | 2019-01-14 | 2019-06-07 | 复旦大学 | A Change Pattern Mining Method for API Misuse |
CN109857648B (en) * | 2019-01-14 | 2021-12-28 | 复旦大学 | API misuse change pattern mining method |
CN111611153A (en) * | 2019-02-26 | 2020-09-01 | 阿里巴巴集团控股有限公司 | Method and device for detecting excessive drawing of user interface |
CN111611153B (en) * | 2019-02-26 | 2023-05-16 | 阿里巴巴集团控股有限公司 | Method and device for detecting overdrawing of user interface |
CN110188029A (en) * | 2019-03-15 | 2019-08-30 | 中山大学 | A Java Null Pointer Analysis System Based on Fixed Value Arrival Analysis Method |
CN110069250A (en) * | 2019-04-30 | 2019-07-30 | 联陆智能交通科技(上海)有限公司 | LTE-V2X standard application layer data decoding method, system and medium |
CN110286891B (en) * | 2019-06-25 | 2020-09-29 | 中国科学院软件研究所 | A coding method of program source code based on code attribute tensor |
CN110286891A (en) * | 2019-06-25 | 2019-09-27 | 中国科学院软件研究所 | A Program Source Code Encoding Method Based on Code Attribute Tensor |
CN112148581A (en) * | 2019-06-26 | 2020-12-29 | 北京京东尚科信息技术有限公司 | Code specification checking method, device, system and storage medium |
CN110348226A (en) * | 2019-07-12 | 2019-10-18 | 北京字节跳动网络技术有限公司 | A kind of scan method of project file, device, electronic equipment and storage medium |
CN110348226B (en) * | 2019-07-12 | 2021-06-18 | 北京字节跳动网络技术有限公司 | Engineering file scanning method and device, electronic equipment and storage medium |
CN110377276B (en) * | 2019-07-19 | 2023-05-23 | 潍柴动力股份有限公司 | Source code file management method and device |
CN110377276A (en) * | 2019-07-19 | 2019-10-25 | 潍柴动力股份有限公司 | Source code file management method and equipment |
CN110399156A (en) * | 2019-07-26 | 2019-11-01 | 华东师范大学 | On-orbit upgrade method for aerospace software |
CN110532015A (en) * | 2019-07-26 | 2019-12-03 | 华东师范大学 | In-orbit upgrade-system towards Space Mission Software |
CN110618809B (en) * | 2019-08-08 | 2020-11-03 | 北京大学 | Front-end webpage input constraint extraction method and device |
CN110618809A (en) * | 2019-08-08 | 2019-12-27 | 北京大学 | Front-end webpage input constraint extraction method and device |
CN111309589A (en) * | 2019-11-29 | 2020-06-19 | 中国电力科学研究院有限公司 | Code security scanning system and method based on code dynamic analysis |
CN110990281B (en) * | 2019-12-04 | 2023-11-07 | 中国直升机设计研究所 | Automatic static analysis method |
CN110990281A (en) * | 2019-12-04 | 2020-04-10 | 中国直升机设计研究所 | Automatic static analysis method |
WO2021120538A1 (en) * | 2019-12-19 | 2021-06-24 | 支付宝(杭州)信息技术有限公司 | Applet code scanning method and apparatus |
CN111104335A (en) * | 2019-12-25 | 2020-05-05 | 清华大学 | A C language defect detection method and device based on multi-level analysis |
CN111382427A (en) * | 2020-01-06 | 2020-07-07 | 宁波中科天齐信息技术有限公司 | Buffer overflow detection method based on variable association rule |
CN111382427B (en) * | 2020-01-06 | 2022-04-26 | 宁波中科天齐信息技术有限公司 | Buffer overflow detection method based on variable association rule |
CN111240687A (en) * | 2020-01-09 | 2020-06-05 | 华东师范大学 | Source code static analysis device |
CN111240982A (en) * | 2020-01-09 | 2020-06-05 | 华东师范大学 | Source code static analysis method |
CN111611158A (en) * | 2020-05-08 | 2020-09-01 | 中国原子能科学研究院 | An application performance analysis system and method |
CN113742732A (en) * | 2020-05-27 | 2021-12-03 | 南京大学 | Code vulnerability scanning and positioning method |
CN111709026A (en) * | 2020-06-10 | 2020-09-25 | Xc5香港有限公司 | Static security detection method, device, computer equipment and storage medium |
CN111709026B (en) * | 2020-06-10 | 2023-10-24 | 深圳知释网络技术有限公司 | Static security detection method, device, computer equipment and storage medium |
CN111488155A (en) * | 2020-06-15 | 2020-08-04 | 完美世界(北京)软件科技发展有限公司 | Coloring language translation method |
CN113806715A (en) * | 2020-06-16 | 2021-12-17 | 上海交通大学 | Embedded device SDK security analysis method |
CN113806715B (en) * | 2020-06-16 | 2024-04-05 | 上海交通大学 | Embedded device SDK security analysis method and system |
CN112148602A (en) * | 2020-09-17 | 2020-12-29 | 云南电网有限责任公司信息中心 | Source code security analysis method based on history optimization feature intelligent learning |
CN112148602B (en) * | 2020-09-17 | 2023-03-28 | 云南电网有限责任公司信息中心 | Source code security analysis method based on history optimization feature intelligent learning |
CN112100626A (en) * | 2020-09-24 | 2020-12-18 | 成都信息工程大学 | Development method for improving source code audit vulnerability hit rate |
CN112162777A (en) * | 2020-09-27 | 2021-01-01 | 北京软安科技有限公司 | Source code feature extraction method and device |
CN112231212A (en) * | 2020-10-16 | 2021-01-15 | 湖南皖湘科技有限公司 | Method for detecting syntax error of program code |
CN112231212B (en) * | 2020-10-16 | 2023-05-09 | 湖南皖湘科技有限公司 | Method for detecting grammar error of program code |
CN112181858B (en) * | 2020-11-09 | 2021-12-31 | 东北大学 | Automatic detection method for Java software project dependent conflict semantic consistency |
CN112181858A (en) * | 2020-11-09 | 2021-01-05 | 东北大学 | Automatic detection method for Java software project dependent conflict semantic consistency |
CN112416337A (en) * | 2020-11-11 | 2021-02-26 | 北京京航计算通讯研究所 | Software architecture development system for aerospace embedded system |
CN112328256B (en) * | 2020-11-19 | 2023-04-25 | 四川创智联恒科技有限公司 | Method for automatically generating source code of structural body analyzer |
CN112328256A (en) * | 2020-11-19 | 2021-02-05 | 四川创智联恒科技有限公司 | Method for automatically generating structure body parser source code |
CN112597446A (en) * | 2020-12-14 | 2021-04-02 | 中国航发控制系统研究所 | Method for screening safety subset of safety key software modeling language |
CN112597446B (en) * | 2020-12-14 | 2023-07-25 | 中国航发控制系统研究所 | Screening method of safety key software modeling language safety subset |
CN112527674B (en) * | 2020-12-22 | 2022-11-04 | 苏州三六零智能安全科技有限公司 | AI frame safety evaluation method, device, equipment and storage medium |
CN112527674A (en) * | 2020-12-22 | 2021-03-19 | 苏州三六零智能安全科技有限公司 | Safety evaluation method, device, equipment and storage medium of AI (Artificial Intelligence) framework |
CN112650675A (en) * | 2020-12-23 | 2021-04-13 | 广州汉全信息科技股份有限公司 | Code detection method and device of block chain and computer equipment |
CN112784290A (en) * | 2021-01-28 | 2021-05-11 | 湖北宸威玺链信息技术有限公司 | Data export tool security analysis method and system and data export method |
CN113407442A (en) * | 2021-05-27 | 2021-09-17 | 杭州电子科技大学 | Pattern-based Python code memory leak detection method |
CN113407442B (en) * | 2021-05-27 | 2022-02-18 | 杭州电子科技大学 | Pattern-based Python code memory leak detection method |
CN113391817A (en) * | 2021-06-16 | 2021-09-14 | 中国海洋大学 | ANTLR 4-based header file replacement method and device |
CN113391817B (en) * | 2021-06-16 | 2022-08-26 | 中国海洋大学 | ANTLR 4-based header file replacement method and device |
CN113869753A (en) * | 2021-09-30 | 2021-12-31 | 南京航空航天大学 | Security analysis method and device for IoT smart home situation |
CN114091018A (en) * | 2021-11-24 | 2022-02-25 | 安徽中科国创高可信软件有限公司 | Method and system for detecting C language program data leakage |
CN114595482B (en) * | 2022-03-10 | 2024-06-11 | 北京邮电大学 | Software source code privacy detection method and system based on static detection |
CN114595482A (en) * | 2022-03-10 | 2022-06-07 | 北京邮电大学 | Software source code privacy detection method and system based on static detection |
US11809847B2 (en) | 2022-03-16 | 2023-11-07 | International Business Machines Corporation | Hardcoded string detection |
CN114816996B (en) * | 2022-03-28 | 2025-02-07 | 慧之安信息技术股份有限公司 | Code flow tracking method and system |
CN114816996A (en) * | 2022-03-28 | 2022-07-29 | 慧之安信息技术股份有限公司 | Code flow tracking method and system |
WO2023197397A1 (en) * | 2022-04-13 | 2023-10-19 | 堡垒科技有限公司 | Decentralized trusted tokenization protocol for open source software |
CN115062308A (en) * | 2022-05-31 | 2022-09-16 | 北京理工大学 | A method for detecting reentrancy vulnerabilities in smart contracts based on semantic analysis |
WO2023241046A1 (en) * | 2022-06-16 | 2023-12-21 | 中兴通讯股份有限公司 | Code management method and apparatus, and electronic device and storage medium |
CN115167834A (en) * | 2022-09-08 | 2022-10-11 | 杭州新中大科技股份有限公司 | Automatic source code generation method and device based on code datamation |
CN115167834B (en) * | 2022-09-08 | 2022-12-23 | 杭州新中大科技股份有限公司 | Automatic source code generation method and device based on code datamation |
CN115495745A (en) * | 2022-10-14 | 2022-12-20 | 国家工业信息安全发展研究中心 | Industrial software source code static detection method and system based on risk function |
CN115495745B (en) * | 2022-10-14 | 2023-04-21 | 国家工业信息安全发展研究中心 | Industrial software source code static detection method and system based on risk function |
CN115718696A (en) * | 2022-10-18 | 2023-02-28 | 国网智能电网研究院有限公司 | Source code cryptography misuse detection method, device, electronic device and storage medium |
CN115718696B (en) * | 2022-10-18 | 2023-06-13 | 国网智能电网研究院有限公司 | Source code cryptography misuse detection method and device, electronic equipment and storage medium |
CN115906094A (en) * | 2022-11-12 | 2023-04-04 | 杭州安恒信息技术股份有限公司 | Software security evaluation method and system and readable storage medium |
CN115617352A (en) * | 2022-12-02 | 2023-01-17 | 中汽研软件测评(天津)有限公司 | C code detection method, equipment and storage medium based on safety coding standard |
CN116340941A (en) * | 2023-02-09 | 2023-06-27 | 深圳开源互联网安全技术有限公司 | Static code scanning method, device, equipment and medium |
WO2025016487A3 (en) * | 2023-07-17 | 2025-03-13 | 耀通科技投资有限公司 | Device code-based risk scanning method and system, and computing device |
CN116881926A (en) * | 2023-07-17 | 2023-10-13 | 耀通科技投资有限公司 | A risk scanning method, system and computing device based on device code |
CN116756048B (en) * | 2023-08-16 | 2023-10-31 | 北京安普诺信息技术有限公司 | Code analysis method, device, computer equipment and storage medium |
CN116756048A (en) * | 2023-08-16 | 2023-09-15 | 北京安普诺信息技术有限公司 | Code analysis method, device, computer equipment and storage medium |
CN117725576A (en) * | 2023-11-27 | 2024-03-19 | 国网山西省电力公司电力科学研究院 | An automated code audit method and system based on static analysis |
CN118349997A (en) * | 2024-03-25 | 2024-07-16 | 中国人民解放军61660部队 | A software backdoor determination method based on static code analysis |
CN119397969A (en) * | 2024-12-31 | 2025-02-07 | 北京开源芯片研究院 | Bus verification method, device, electronic device and readable storage medium |
Also Published As
Publication number | Publication date |
---|---|
CN100461132C (en) | 2009-02-11 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN101017458A (en) | Software safety code analyzer based on static analysis of source code and testing method therefor | |
Shar et al. | Defeating SQL injection | |
CN101661543B (en) | Method and device for detecting security flaws of software source codes | |
CN113158197B (en) | SQL injection vulnerability detection method and system based on active IAST | |
Ko | Execution Monitoring of security-critical programs in a distributed system: a specification-based approach | |
Junjin | An approach for SQL injection vulnerability detection | |
Rahman et al. | Share, but be aware: Security smells in python gists | |
Bossi et al. | A system for profiling and monitoring database access patterns by application programs for anomaly detection | |
Tyagi et al. | Evaluation of static web vulnerability analysis tools | |
Kupsch et al. | Manual vs. automated vulnerability assessment: A case study | |
Jimenez et al. | Software vulnerabilities, prevention and detection methods: A review1 | |
CN109657462B (en) | Data detection method, system, electronic device and storage medium | |
Shin et al. | SQLUnitgen: Test case generation for SQL injection detection | |
CN115952503A (en) | Application safety testing method and system integrating black, white and gray safety detection technology | |
Zhu et al. | Detecting privilege escalation attacks through instrumenting web application source code | |
Pozza et al. | Comparing lexical analysis tools for buffer overflow detection in network software | |
Di Stasio | Evaluation of static security analysis tools on open source distributed applications | |
CN115270139B (en) | IoT equipment network service automatic vulnerability analysis method and system | |
RU2662391C1 (en) | System and method for checking web resources for presence of harmful inserts | |
Antoniol | Keynote paper: Search based software testing for software security: Breaking code to make it safer | |
Zaid et al. | Automated identification of over-privileged smartthings apps | |
Okun et al. | The second static analysis tool exposition (SATE) 2009 | |
Nithya et al. | Detection and avoidance of input validation attacks in web application using deterministic push down automata | |
Zhao et al. | Software Vulnerability Mining and Analysis Based on Deep Learning. | |
Eassa et al. | IMATT: An integrated multi-agent testing tool for the security of agent-based web applications |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
C10 | Entry into substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
C14 | Grant of patent or utility model | ||
GR01 | Patent grant | ||
ASS | Succession or assignment of patent right |
Owner name: SHENZHEN BEIYOU NETWORK TECHNOLOGY CO., LTD. Free format text: FORMER OWNER: BEIJING POSTAL AND TELECOMMUNICATIONS UNIV. Effective date: 20140805 |
|
C41 | Transfer of patent application or patent right or utility model | ||
COR | Change of bibliographic data |
Free format text: CORRECT: ADDRESS; FROM: 100876 HAIDIAN, BEIJING TO: 518057 SHENZHEN, GUANGDONG PROVINCE |
|
TR01 | Transfer of patent right |
Effective date of registration: 20140805 Address after: 518057 Guangdong city of Shenzhen province Nanshan District Guangdong streets south Four Virtual University Park A301 Patentee after: Shenzhen Beiyou Network Technology Co. Ltd. Address before: 100876 Beijing city Haidian District Xitucheng Road No. 10 Patentee before: Beijing University of Posts and Telecommunications |
|
CF01 | Termination of patent right due to non-payment of annual fee |
Granted publication date: 20090211 Termination date: 20210302 |
|
CF01 | Termination of patent right due to non-payment of annual fee |