一种跨架构系统迁移安全漏洞识别方法及装置

By converting the code of heterogeneous systems into intermediate code and comparing it with security control rules, security vulnerabilities in cross-architecture system migration can be identified. This solves the problem that traditional tools cannot identify security control points, and enables efficient and accurate vulnerability discovery and remediation.

CN122087834BActive Publication Date: 2026-07-17BEIJING CHAITIN TECH CO LTD
View PDF 2 Cites 0 Cited by

Patent Information

Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
BEIJING CHAITIN TECH CO LTD
Filing Date
2026-04-22
Publication Date
2026-07-17

AI Technical Summary

Technical Problem

During cross-architecture system migration, existing technologies struggle to accurately identify security vulnerabilities, especially due to differences between the source and target systems in software architecture, programming languages, and access control mechanisms. This makes it difficult for traditional security auditing tools to effectively identify the correspondence between security control points, and compatibility layer code becomes a security weak point.

Method used

By converting the code of the source and target business systems into intermediate code in a unified format, security control rules are parsed and extracted, risky code locations are identified through comparison, key business processes are generated, and the execution process is simulated by an intelligent agent to identify security vulnerabilities. Accuracy is ensured by combining exploitability verification.

Benefits of technology

It achieves secure semantic alignment between different languages ​​and architecture systems, fully covers risks unique to migration scenarios, discovers business logic vulnerabilities that are difficult to identify with traditional tools, and generates remediation solutions, forming a complete closed loop from discovery to remediation.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN122087834B_ABST
    Figure CN122087834B_ABST
Patent Text Reader

Abstract

本发明公开了一种跨架构系统迁移安全漏洞识别方法及装置,涉及网络及系统安全技术领域。方法包括:获取源系统与目标系统的异构代码,转换为统一格式的中间代码;解析源系统中间代码得到风险代码位置及第一安全控制规则,解析目标系统中间代码得到风险代码位置及第二安全控制规则;比对两套安全控制规则,识别因规则差异导致的第三风险代码位置;基于所得到的风险代码位置生成关键业务流程,按照两套规则模拟执行;确定目标漏洞。本发明解决了系统迁移过程中因架构差异导致的安全控制点失配问题,实现了迁移场景下漏洞的自动化、高精度识别。
Need to check novelty before this filing date? Find Prior Art