Website vulnerability online evaluation method and device

An online vulnerability and evaluation device technology, applied in the field of Internet security, can solve the problems of single detection, single vulnerability risk assessment, website application risk assessment, etc., and achieve a reasonable evaluation effect

Inactive Publication Date: 2022-06-24
山东鼎夏智能科技有限公司
View PDF0 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

Existing website vulnerability detection is usually relatively simple. It only scans vulnerabilities based on the established vulnerability database, and cannot comprehensively consider the application of the website for risk assessment, resulting in a single vulnerability risk assessment.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Website vulnerability online evaluation method and device
  • Website vulnerability online evaluation method and device
  • Website vulnerability online evaluation method and device

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0067] In order to make the objectives, technical solutions and advantages of the present invention clearer, the present invention will be further described in detail below with reference to the accompanying drawings and embodiments. It should be understood that the specific embodiments described herein are only used to explain the present invention, but not to limit the present invention.

[0068] It can be understood that, in the prior art, for website vulnerability detection, the detection is usually relatively simple, only vulnerability scanning is performed according to the established vulnerability database, and risk assessment cannot be performed comprehensively considering the application of the website, resulting in a single vulnerability risk assessment.

[0069] In order to solve the above problems, the embodiment of the present invention obtains the exposure information of the target website by collecting information on the target website, and performs vulnerability...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The embodiment of the invention relates to the field of internet security, and particularly discloses a website vulnerability online evaluation method and device. According to the embodiment of the invention, information collection is carried out on a target website, exposure information of the target website is obtained, vulnerability detection of a system layer and a target layer is carried out on the target website according to the exposure information, and a target vulnerability of the target website and corresponding vulnerability information are obtained; obtaining access data of the target website, and analyzing the access data and the vulnerability information to obtain a vulnerability type of the target vulnerability; and integrating the access data and the vulnerability type, and performing vulnerability risk assessment on the target vulnerability to obtain vulnerability assessment information. According to the technical scheme, comprehensive vulnerability detection can be carried out on the target website from the system layer and the target layer according to the exposure information of the target website, and comprehensive risk assessment is carried out on the target vulnerability according to the access data and the vulnerability type of the target website, so that assessment of the website vulnerability is more reasonable, and more normative guidance can be conveniently provided for website vulnerability repair.

Description

technical field [0001] The invention belongs to the field of Internet security, and in particular relates to a method and device for online assessment of website vulnerabilities. Background technique [0002] With the wider application of Internet technology, many people's daily work and entertainment are carried out on the Internet, and the Internet has been closely related to people's lives. Therefore, the security of the website has been paid more and more attention by people. However, there are various security holes in the network. Vulnerability discovery is a key process in the confrontation between the attacker and the defender. If the defender cannot discover the exploitable vulnerability earlier than the attacker, the attacker may use the vulnerability to launch an attack. The earlier a vulnerability is discovered and fixed, the less likely an information security incident will occur. [0003] Website vulnerability detection usually refers to a security detection...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L9/40H04L67/02
CPCH04L63/1433H04L67/02
Inventor 张永印
Owner 山东鼎夏智能科技有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products