首页> 外国专利> Knowledge-based and collaborative system for security assessment of web applications

Knowledge-based and collaborative system for security assessment of web applications

机译:基于知识的协作系统,用于Web应用程序的安全评估

摘要

A standardized system for assessing the security of web based applications which has a component for collecting information regarding threat and vulnerabilities to web applications is described. The system includes a component for organizing the information regarding threat and vulnerabilities to web applications into a uniform language so that the information is integrated throughout the entirety of the system. Further, the system has a component for expressing the information in a structured and uniform format of a hierarchical relationship between threat and vulnerabilities which includes threat vulnerability trees. The system includes a component for rating the threats and vulnerabilities under a uniform rating system. The system includes a component for integrating the information into both a storage component and also a presentation component for presenting the information. The presentation component presents the information in a graphical format which visually demonstrates the relationships between the threats and the vulnerabilities.
机译:描述了一种用于评估基于Web的应用程序的安全性的标准化系统,该系统具有用于收集有关对Web应用程序的威胁和漏洞的信息的组件。该系统包括一个组件,用于将有关对Web应用程序的威胁和漏洞的信息组织为统一的语言,以便在整个系统中集成该信息。此外,该系统具有用于以结构化且统一的格式表达威胁和漏洞之间的层次关系的信息的组件,其中,所述层次关系包括威胁漏洞树。该系统包括一个用于在统一评级系统下对威胁和漏洞进行评级的组件。该系统包括用于将信息集成到存储组件和用于呈现信息的呈现组件两者中的组件。呈现组件以图形格式呈现信息,以视觉方式展示威胁与漏洞之间的关系。

著录项

  • 公开/公告号US8099787B2

    专利类型

  • 公开/公告日2012-01-17

    原文格式PDF

  • 申请/专利权人 WEIMIN VASUDEVA;

    申请/专利号US20070839080

  • 发明设计人 WEIMIN VASUDEVA;

    申请日2007-08-15

  • 分类号G06F15/18;

  • 国家 US

  • 入库时间 2022-08-21 17:26:50

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号