Website security detection method and device

A security detection and website technology, applied in the field of Internet security, can solve the problems of consuming the operating resources of the detection server and the crash of the detection server.

Active Publication Date: 2016-10-26
QI-ANXIN LEGENDSEC INFORMATION TECH (BEIJING) INC +1
View PDF2 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

At this time, the detection server A will capture the request again, and further test ws.360.cn / admin / admin / admin.php... Such a cycle, constructing new links with each other, will form an endless loop, which will consume a lot of the operation of the detection server resources, eventually causing the detection server to crash

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Website security detection method and device
  • Website security detection method and device
  • Website security detection method and device

Examples

Experimental program
Comparison scheme
Effect test

specific Embodiment

[0187] 1. The setting unit 120 may be configured to use a graphical user interface to set a known specific website and / or its associated new link.

[0188] Specifically, when the software realized by the present invention runs for the first time, it will provide a graphical user interface through the setting unit 120, which is used to provide the user with the setting of some known specific websites. The setting is completed by inputting content related to these known specific websites, so that one or more known specific websites are preset. The predetermined content can be one or more domain names, such as so.com, 360.cn, etc., or the IP address corresponding to the server, as well as continuous IP address segments or discrete IP addresses composed of IP addresses. address range. These setting contents, as mentioned above, can be understood as an associated new link or seed URL in essence, which can be stored in a list of known specific websites so as to be called by other f...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to a website security detecting method comprising the following steps of acquiring a hypertext transfer protocol request packet which belongs to a known specific website and is obtained through bypass interception; constructing new deeper links containing link paths in the request packet by virtue of the links which belong to the known specific website and are contained in the request packet; and carrying out vulnerability scanning detection on websites corresponding to the new links. Correspondingly, the invention also provides a website security detecting device. By using the website security detecting method and device, the know specific website and the new links thereof can be found in time, the new links can be constructed by virtue of the existing known specific website links, and the new links can be subjected to vulnerability detection in real time, so that leakage detection can be avoided; and the website security detecting method and device have the advantages of high efficiency, timeliness and intelligence for maintaining the safety of the websites.

Description

technical field [0001] The invention relates to Internet security technology, in particular to a website security detection scheme and device. Background technique [0002] There are various security risks in website access, such as: COOKIE poisoning, application buffer overflow, cross-site scripting attack, known security holes, etc. These website security issues will further lead to security issues of user data. Therefore, website visitors want to know the security level of the website, and naturally tend to use relatively safe websites, while website managers hope to fix the loopholes in time, overcome the security problems of their websites, and provide website visitors with a safer browsing platform . [0003] The method of website security detection usually uses a scanner to actively crawl webpages through crawler technology, and conducts security tests on the crawled webpages. In order to avoid increasing the load on the website server caused by the implementation o...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): H04L29/06G06F21/56G06F21/57
CPCH04L63/1433
Inventor 龙专
Owner QI-ANXIN LEGENDSEC INFORMATION TECH (BEIJING) INC
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products