首页> 外国专利> System, method and apparatus to visually configure an analysis of a program

System, method and apparatus to visually configure an analysis of a program

机译:可视地配置程序分析的系统,方法和装置

摘要

A method extracts views from an application program, where at least some extracted views include at least one view component, and presenting the extracted views to a user. In response to the user selecting a view component in a presented extracted view, the method presents a form to the user having a plurality of vulnerability types indicated for the selected view component and, for each vulnerability type, provides an ability for the user to set an indicator in the form as to indicate whether the view component is at least one of a source or a sink. The method further includes saving the form containing the user's input in conjunction with a user-provided label for the selected view component and a unique identification of the selected view component, and deriving an analysis policy configuration from the saved form that is formatted for use by a program security analyzer.
机译:一种方法从应用程序中提取视图,其中至少一些提取的视图包括至少一个视图组件,并将提取的视图呈现给用户。响应于用户在呈现的提取视图中选择视图组件,该方法向用户呈现具有针对所选择的视图组件指示的多个漏洞类型的表单,并且针对每种漏洞类型,为用户提供了设置能力一种形式的指示符,用于指示视图组件是源还是接收器中的至少一个。该方法还包括保存包含用户输入的表单以及用于选定视图组件的用户提供的标签和选定视图组件的唯一标识,以及从已保存的表单中导出分析策略配置,该格式被格式化以供使用程序安全分析器。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号