一种面向Web应用的动态漏洞扫描与防护方法

By constructing a dynamic resource state graph and adaptive scanning paths, the problems of insufficient scanning coverage and high false positive rates in modern web applications are solved, achieving accurate identification and efficient protection against complex attack surfaces.

CN122419973APending Publication Date: 2026-07-17SHANDONG UNIV OF SCI & TECH
View PDF 1 Cites 0 Cited by

Patent Information

Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
SHANDONG UNIV OF SCI & TECH
Filing Date
2026-06-08
Publication Date
2026-07-17

AI Technical Summary

Technical Problem

Existing technologies lack a unified mechanism for resource relationship modeling, scan priority scheduling, multi-source anomaly evidence fusion, and adaptive linkage of protection strategies when facing the complex attack surface of modern web applications. This results in insufficient scan coverage, high false alarm rate, and inadequate protection matching.

Method used

Construct a dynamic resource state graph, calculate the enhanced attack surface exposure and generate scanning priorities, combine adaptive scanning paths for dynamic detection, accumulate anomaly evidence and fuse graph propagation relationships, generate linkage protection strategies and perform online feedback updates.

Benefits of technology

It improves the targeting and efficiency of scanning, reduces the false positive rate of vulnerabilities, achieves accurate identification of hidden interfaces and dynamic events, forms a closed-loop mechanism, adapts to the dynamic changes of web applications, and enhances vulnerability detection capabilities and protection timeliness.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN122419973A_ABST
    Figure CN122419973A_ABST
Patent Text Reader

Abstract

本申请公开了一种面向Web应用的动态漏洞扫描与防护方法,涉及网络安全技术领域,通过构建动态资源状态图,实现运行期资源关系的全面建模,基于增强攻击面暴露度生成扫描优先级,提升扫描针对性与效率,减少无效资源消耗。结合自适应扫描路径执行动态探测,累积多轮异常证据并融合图传播关系计算风险评分,显著降低漏洞误报率,精准识别隐藏接口、动态事件等复杂攻击面隐患。通过联动防护策略与在线反馈更新,实现扫描、检测、防护全流程贯通,形成闭环机制,自适应适配Web应用动态变化,提升漏洞检出能力与防护时效性,保障Web应用运行安全。有效解决了现有技术单一环节优化导致的扫描覆盖不足、误报率高、防护匹配不充分的问题。
Need to check novelty before this filing date? Find Prior Art

Citation Information

Patent Citations

  • Scanning unexposed web applications for vulnerabilities

    US11228611B1