A system that scans source code for internal and external web page links.
Patent Information
- Authority / Receiving Office
- TR · TR
- Patent Type
- Applications
- Current Assignee / Owner
- TURKCELL TEKNOLOJI ARASTIRMA & GELISTIRME AS
- Filing Date
- 2023-12-28
- Publication Date
- 2026-06-22
Smart Images

Figure 00000012_0000
Abstract
Description
1 TARIFF INTERNAL AND EXTERNAL WEB PAGES WITHIN THE SOURCE CODE A SYSTEM THAT SCANS LINKS Technical Area 5 This invention is the source code of a software application that is connected to an application service. whether there is a Web Service link defined in the API Gateway security layer by investigating whether this is the case and whether the application is used over the internal and external networks. 10 that distinguishes whether it is not and manages the application service to which it is connected with a system that enables alarms to be generated and sent to individuals at specific intervals It is related. Previous Technique Today, web service links of integrated systems belonging to a software application. This is monitored manually, which can lead to wasted time and errors. Therefore, considering the studies and shortcomings in the current technique... When this is done, a special code splitting 20 is included within the application code. By scanning with its algorithm, it determines whether the Web Service link being used is internal or external network. a system is needed that will allow it to distinguish whether or not it is on it It is understood. Chinese patent no. CN109067726A, which is included in the prior art, 25 in the document, to check HTML elements within a source code This refers to a structured system. The technique belongs to the field of network security. station building system identification method, device and storage medium It explains. The method includes: defining a web page Obtaining the source code; then extracting all HTML30 from the source code. Obtaining a set of HTML elements containing the elements; then each one 2 Mapping of the HTML element and the corresponding element attribute in the HTML element set. Obtaining an HTML element attribute set that represents the relationship; further then, for each HTML element in the HTML element attribute set, the corresponding An HTML element that represents the attribute and the mapping relationship between attribute values. obtaining the attribute value set of the element; finally, this 5 of the HTML element attribute value set and pre-configured characteristic library Based on this, defining the website creation system, the web to be defined This corresponds to the page. The method is used to describe the site creation system. HTML element attributes are based on similarity; this is only relevant to the site. It not only enriches the types of definitions for the creation system, but also 10 It also improves the accuracy of the site creation system's identification. The system, web to identify weaknesses in services and solve problems It is structured. Brief Description of the Invention 15 The purpose of this invention is to provide resources for a software application that is dependent on an application service. Within the code, a Web Service is defined in the API Gateway security layer. by investigating whether a link exists and whether the application can access the internal and external networks. 20 that manages whether or not it exists and the application service it is connected to. To enable the generation and transmission of alarms to individuals at specific intervals. It is about implementing a developed system. Another purpose of this invention is to provide a special code decoding within application code. By scanning with its algorithm, it determines whether the Web Service link used is internal or external network 25 a system developed to enable differentiation between those on it and those not The goal is to implement the system. Another purpose of this invention is to improve web service security in software applications. by ensuring the identification and prevention of external cyberattacks. 30 It is about implementing a system developed to provide this. 3 Detailed Description of the Invention The "Internal Insight Within Source Codes" method was used to achieve the purpose of this invention. The "System for Scanning External Web Page Links" is shown in the attached document, and these 5 shape; Figure 1 shows a schematic view of the system that is the subject of the invention. The parts shown in the figure are individually numbered, and these numbers correspond to 10 The corresponding answers are given below. 1. System 2. Electronic Devices 3. Interface 15 4. Web Interface 5. Web Server 6. Source Code Server 7. Source Code Scanning Application A. ApiGateway Server 20 Scanning the application code using a special code-breaking algorithm. By doing this, we can determine whether the web service link being used is on an internal or external network. The system that is the subject of the invention was developed to enable the distinction between those that are not. (1); 25 - exchanging data using any remote communication protocol and at least one configured to run at least one application on it electronic device (2), - to be executed on an electronic device (2), on which C# or Java programming languages are used at least one interface configured to enable writing source code (3), 30 4 - to be run on an electronic device (2) and to display the output at least one web interface configured (4), - connection with electronic device (2) using any communication protocol at least one configured to set up and transmit the outputs to the web interface (4) web server (5), 5 - connection with electronic device (2) using any communication protocol to establish and run on the electronic device (2) through this established connection Communicating with the interface (3), accessing the source code written on the interface (3) the most configured to access, make code changes and store them a small source code server (6), 10 - to be executed on the electronic device (2), on the source code server (6) accessing source code changes and data in http, https and IP formats Reading the data, processing it through an algorithm that distinguishes between internal and external servers. Comparing it with the ApiGateway server (A) where the information is stored, The data being compared is from a different server than the one where the software application is located. If it is on the server and there is no APIGateway server (A), then the web server (5) via the web interface (4) information to the software code owner and process managers to publish as, http, https, IP information found in the compared code if the software application is on the same server as the machine where it is located and ApiGateway If server (A) does not have at least one 20 configured to store this information. It includes a source code scanning application (7). The electronic device (2) in the system (1) which is the subject of the invention, any remote communication to exchange data using the protocol and have at least one The application is configured to run. Electronic device (2), desktop 25 It is a device in the form of a computer and / or portable computer. Electronic device (2), on it the interface (3), the web interface (4) and the source code browsing application (7) It is configured to operate. The electronic device (2) is made available to the known users of the technology. using any remote communication protocol available on the web To connect to the server (5) and the source code server (6) 30 It is being structured. The interface (3) in the system (1) which is the subject of the invention, on the electronic device (2) It is configured to be executed. The interface (3) is configured to be executed with C# or Java. It is structured to enable the writing of source code using programming languages. The web interface (4), electronic device (2) included in the system (1) is the subject of the invention. It is structured to be executed on. Web interface (4), source code The scanning application (7) is configured to display the outputs. The web server (5) in the system in question (1) is 10 in the known state of the art. using any communication protocol located with the electronic device (2) to establish a connection and through this established connection on the electronic device (2) to communicate with the source code scanning application (7) that is being run is configured. Web server (5), source code scanning application (7) It is configured to transmit its outputs to the web interface (4). 15 The source code server (6) in the system in question (1) is known to the art. using any communication protocol involved in the situation of the electronic device (2) to establish a connection and through this connection to the electronic device (2) It is configured to communicate with the interface (3) that is run on it. 20 The source code server (6) allows access to the source code written on the interface (3), The code is configured to make and store changes. The source code scanning application (7) included in the system (1) of which the invention is located, electronic It is configured to run on device (2). Source code scan 25 application (7), source code changes on source code server (6) to access and read data in http, https and IP formats It is structured. The source code scanning application (7) processes the read data internally and externally. Server information is stored using an algorithm that distinguishes between servers. It is configured to compare with the ApiGateway server (A). Source 30 Code scanning application (7), compared data of a software application 6 If it is on a different server than the one it is currently on, and on the ApiGateway server (A) otherwise the owner of the software code (4) to the web interface via the web server (5) and is structured to be published as information to process managers. Source code scanning application (7) found http in the compared code, https, if the IP address is on the same server as the machine where the software application is located, then 5 and to store this information if it does not exist on the ApiGateway server (A) It is being structured. Industrial application of the invention In the system subject to the invention, (1) server (5), source code server (6), known art using any communication protocol involved in the situation of the electronic device (2) establishes a connection and through this connection the electronic device (2) It communicates with the interface (3) that is run on it. The source code server (6), Accessing the source code written on the interface (3), code changes 15 It does and stores them. Source code scanning application (7), The source code scanning application is run on the electronic device (2). (7) accesses source code changes on the source code server (6) and It reads data in http, https, and IP formats. Source code scanning. application (7) uses an algorithm that distinguishes between internal and external servers for the data read 20 It compares the server information to the ApiGateway server (A) where the server information is stored. Source code scanning application (7), compared data of a software application If it is on a different server than the one it is currently on, and on the ApiGateway server (A) otherwise the owner of the software code (4) to the web interface via the web server (5) and publishes it as information to process managers. Source code scan 25 application (7), http, https, IP information found in the compared code if the software application is on the same server as the machine where it is located and ApiGateway If server (A) does not exist, it stores this information. Thus, the application code By scanning within it using a special code-breaking algorithm, the web used 30. Distinguishing whether the service link is on an internal or external network. is provided. 7 Around these fundamental concepts, the invention focuses on "Internal and External Communications within Source Codes". A wide variety of applications related to the "Web Page Link Scanning System (1)" It is possible to develop further, and the invention cannot be limited to the examples described here. It is essentially as stated in the requests. 5
Claims
8 REQUESTS 1. Scanning the application code using a special code-breaking algorithm. By doing this, we can determine whether the web service link being used is on an internal or external network. developed to enable the differentiation of which is not; 5 - exchanging data using any remote communication protocol to carry out and at least run an application on it at least one electronic device configured (2), - to be run on an electronic device (2), C# or Java software on it at least one 10-bit system configured to enable source code writing using programming languages. interface (3), - to be run on an electronic device (2) and to display the output at least one web interface configured (4), - using any communication protocol with electronic devices (2) to establish a connection and transmit the outputs to the web interface (4) 15 at least one web server configured (5), - using any communication protocol with electronic devices (2) to establish a connection and through this established connection electronic device (2) to communicate with the interface (3) that is run on the interface (3) Accessing the written source code, making code changes and 20 containing at least one source code server (6) configured to store And; - to be executed on electronic device (2), source code server (6) accessing source code changes and using http, https and IP Reading data in the format, distinguishing between internal and external servers for the read data 25 an algorithm that stores server information via APIGateway compare the data with server (A), the data being compared is a software if the application is on a different server than the one it is located on, and If there is no APIGateway server (A), then web server (5) is used for web 30 to the interface (4) as information to the software code owner and process managers publishing, http, https, IP information found in the compared code 9 if the software application is on the same server as the machine where it is located, and To store this information if (A) does not exist on the ApiGateway server. characterized by at least one configured source code scanning application (7) a system (1).
2. Data exchange using any remote communication protocol. to carry out and at least run an application on it configured and desktop computer and / or portable computer The claim is characterized by an electronic device (2) which is a device of this type. A system like the one in 1 (1). 10 3. On it, the interface (3), the web interface (4) and source code scanning electronic device (2) configured to run application (7) A system like the one in Claim 1 or 2, characterized (1).
4. Using any remote communication protocol, connect to the web server (5) and configured to connect to the source code server (6) a system as in Claim 3 characterized by an electronic device (2) (1).
5. Interface (3) configured to run on electronic device (2) 20 as in any of the above claims characterized by system (1).
6. Writing source code on it using C# or Java programming languages. The above 25 is characterized by the interface (3) which is structured to provide a system like any of the requests (1).
7. Web interface configured to run on electronic device (2) any of the above claims characterized by its face (4) such a system (1). 30 8. To view the outputs of the source code scanning application (7) the above is characterized by the structured web interface (4) a system like any of the requests (1).
9. Using any communication protocol, with an electronic device (2) to establish a connection and through this established connection electronic device (2) Communicate with the source code scanning application (7) that is being run on it the above is characterized by the web server (5) configured to do so. a system like any of the requests (1). 10 10. Source code scanning application (7) outputs onto web interface (4) characterized by the web server (5) configured to transmit a system like any of the above requests (1).
11. Using any communication protocol with an electronic device (2) to establish a connection and through this established connection electronic device (2) configured to communicate with the interface (3) that is run on it from the above requests characterized by the source code server (6) a system like any other (1). 20 12. Accessing the source code written on the interface (3), making code changes a source code server configured to create and store these files (6) like any of the above-mentioned claims characterized by system (1). 25 13. Source code configured to be executed on electronic device (2) from the above requests characterized by the scanning application (7) a system like any other (1). 11 14. To access source code changes on the source code server (6) and A resource configured to read data in http, https, and IP formats. from the above requests characterized by the code scanning application (7) a system like any other (1).
15. The server processes the read data using an algorithm that distinguishes between internal and external servers. to compare with the ApiGateway server (A) where the information is stored characterized by the structured source code scanning application (7) a system like any of the above requests (1).
16. The data being compared is different from the server where a software application is located. if it is on a server and the ApiGateway server (A) is not there, then the web server (5) via web interface (4) owner of software code and process source code structured to be published as information to managers 15 of the above requests characterized by the screening application (7) a system like any other (1).
17. The http, https, and IP information found in the compared code is related to the software. if the application is on the same server as the machine where it is located and ApiGateway If this information is not present on server (A), resource 20 is configured to store it. from the above requests characterized by the code scanning application (7) a system like any other (1). 30