首页> 外国专利> Dynamic comparative analysis method and apparatus for detecting and preventing code injection and other network attacks

Dynamic comparative analysis method and apparatus for detecting and preventing code injection and other network attacks

机译:用于检测和防止代码注入和其他网络攻击的动态比较分析方法和装置

摘要

A security appliance includes a vulnerable testbed that simulates at least one known vulnerability, and a secure testbed that simulates not having that vulnerability. A testbed monitor monitors run-time behavior of the vulnerable testbed and the secure testbed, obtaining at least one run-time behavior parameter. A comparative evaluator module compares the run-time behavior parameters with respect to the received client request to determine if it is legitimate or illegitimate. The security appliance outputs its determination with a message and/or by forwarding client requests deemed legitimate and dropping client requests deemed illegitimate. The determination can be based, on differences in the run-time behavior parameters. Illegitimate requests can be cached for later matching. The requests can be database data requests, XML formatted requests, operating system requests and/or other types of requests that would be differentially handled by a vulnerable server and a secure server.
机译:安全设备包括一个可模拟至少一个已知漏洞的易受攻击的测试平台,以及一个模拟不具有该漏洞的安全测试台。一个测试台监视器监视易受攻击的测试台和安全测试台的运行时行为,至少获取一个运行时行为参数。比较评估器模块将运行时行为参数与接收到的客户端请求进行比较,以确定它是合法的还是非法的。安全设备通过消息和/或通过转发被认为合法的客户端请求并丢弃被认为非法的客户端请求来输出其确定。该确定可以基于运行时行为参数中的差异。不合法的请求可以被缓存以用于以后的匹配。这些请求可以是数据库数据请求,XML格式的请求,操作系统请求和/或其他类型的请求,这些请求将由易受攻击的服务器和安全服务器进行差异处理。

著录项

  • 公开/公告号US9479526B1

    专利类型

  • 公开/公告日2016-10-25

    原文格式PDF

  • 申请/专利权人 SHAPE SECURITY INC.;

    申请/专利号US201414541062

  • 发明设计人 SIYING YANG;

    申请日2014-11-13

  • 分类号H04L29/06;G06F21/50;

  • 国家 US

  • 入库时间 2022-08-21 14:32:45

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号