Method, system and device for detecting HTTP response header and readable storage medium

A technology of response header and response data, applied in the field of network security, can solve the problems of complex operation, slow analysis speed, low accuracy rate, etc., to avoid complex operation and improve accuracy.

Active Publication Date: 2020-01-17
SECZONE TECH CO LTD
View PDF6 Cites 5 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

This method has defects such as complicated operation, slow anal

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method, system and device for detecting HTTP response header and readable storage medium
  • Method, system and device for detecting HTTP response header and readable storage medium
  • Method, system and device for detecting HTTP response header and readable storage medium

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0026] In order to describe the technical content and structural features of the present invention in detail, the following will be further described in conjunction with specific embodiments and accompanying drawings.

[0027]See Fig. 1 , the method for detecting HTTP response head of the present invention comprises the following steps:

[0028] (1) Intercepting server's by Java agent Process the Java class file corresponding to the request program, and obtain the instrumentation entry from the Java class file;

[0029] (2) inject the detection bytecode into the instrumentation Entrance;

[0030](3) return the Java class file injected into the detection bytecode to the server;

[ [0031] (4) obtain the response data that the server returns to the client;

[0032] (5) obtain the HTTP response in the response data by Java reflection header to determine whether the HTTP response header is a secure HTTP response header.

[0033] The detection process of the method for detecting the HTTP response he...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a method for detecting an HTTP (Hyper Text Transport Protocol) response header, which comprises the following steps: (1) intercepting a Java class file corresponding to a processing request program of a server through a Java agent, and obtaining an instrumentation entrance from the Java class file; (2) injecting the detection byte code into an instrumentation entrance; (3)returning the Java class file injected with the detection byte code to the server; (4) acquiring response data returned to the client by the server; and (5) obtaining an HTTP response header in the response data through Java reflection so as to judge whether the HTTP response header is a safe HTTP response header. The invention further discloses a system and device for detecting the HTTP responseheader and a computer readable storage medium. According to the invention, HTTP response data is obtained based on a Java byte code instrumentation technology; according to the method, the HTTP response header in the HTTP response data is acquired through Java reflection, so that the HTTP response header is detected, the accuracy of a detection result is improved, and the problems of complex operation, low detection rate, low accuracy, poor real-time performance and high cost caused by manual analysis are avoided.

Description

technical field [0001] The invention relates to the technical field of network security, in particular to a method, system, device and computer-readable storage medium for detecting an HTTP response header. Background technique [0002] In Web communication, after the client sends the request information to the server, the server will return the corresponding HTTP (Hyper Text Transfer Protocol, hypertext transfer protocol) response to the client. The HTTP response includes a status line, several response headers and entities content. Among them, the HTTP response header includes HSTS (HTTP Strict Transport Security, HTTP Strict Transport Security) header, X-Frame-Options (X frame, option) header, X-XSS-Protection (X-XSS protection) header, X-Content- Type-Options (X-Content-Type option) header, Content-Security-Policy (content security policy) header, Referrer-Policy (reference policy) header and Content-Type (content type) header, etc. [0003] Among them, HSTS is a secur...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04L29/06H04L29/08
CPCH04L63/1416H04L63/168H04L67/02
Inventor 胡娇娇李华董燕万振华王颉
Owner SECZONE TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products