Method for estabilishing Web service security analysis model based on program slice

A technology of security analysis and program slicing, which is applied in the field of network security and software construction technology, can solve problems such as system hazards, and achieve the effects of improving security, improving use efficiency, and enhancing protection

Active Publication Date: 2009-11-25
江苏永达电力电信安装工程有限公司
View PDF0 Cites 7 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

When one of the nodes (i.e. Web service) has a security vulnerability, the security vulnerability ...

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method for estabilishing Web service security analysis model based on program slice
  • Method for estabilishing Web service security analysis model based on program slice

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0037] The core problems that the present invention attempts to solve include: based on program slicing, obtain the abstraction of information flow from Web service implementation; in independent Web services, obtain the flow direction and leakage of key information; in web service networks, study key information Whether it is transmitted and leaked leads to the spread of vulnerabilities; and how to combine the analysis results of this model with the security measures proposed in the existing web service security norms and processes to internally and externally monitor key information and common messages in web services Protection, improve web service security.

[0038] Aiming at the above-mentioned core problems, the present invention is oriented to the coding stage of secure Web service development, obtains information flow abstraction based on program slices, builds a Web service security analysis model, and finds information leakage security loopholes in the Web service net...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The present invention relates to a software establishing technique and network security, and specifically to a method for establishing the Web service security analysis model based on the program slice. The invention provides a method for establishing Web service security analysis model based on program slice for protecting the key information and the common information in the network service from the inside and the outside and increasing the network service security. The method of the invention adopts the following technical solutions: 1) establishing a slicer module for obtaining the abstract of the information flow in the Web service realizing code; 2) establishing a network service analysis module for discovering the safety breaking state that the key information is leaked to the Internet user through the current service interface, wherein the step comprises the safety analysis of the independent network service and the safety analysis of the network service network; and 3) establishing a safety reporting module for analyzing the result based on the module, and combining the safety measures presented in the existing Web service security specification and process for generating a corresponding security report. The method of the invention is mainly used for providing the Web service security.

Description

technical field [0001] The invention relates to software construction technology and network security, in particular to the software architecture of the Web service security analysis model based on program slicing, and the method for establishing the program slicing-based Web service security analysis model. Background technique [0002] Web Service (Web Service) is a service based on Extensible Markup Language XML and HTTPS (full name: Hypertext Transfer Protocol over Secure Socket Layer, Hypertext Transfer Protocol with secure process communication mechanism layer), and its communication protocol is mainly based on simple object access The protocol SOAP, the service description is through the web service description language WSDL, and the unified description, discovery and integration protocol UDDI is used to discover and obtain the metadata of the service. [0003] The unique advantages of Web services in shielding the complexity of the system and exchanging information b...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04L29/06H04L9/36
Inventor 李晓红冯志勇刘然徐超许光全
Owner 江苏永达电力电信安装工程有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products