Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

24 results about "Code injection" patented technology

Code injection is the exploitation of a computer bug that is caused by processing invalid data. Injection is used by an attacker to introduce (or "inject") code into a vulnerable computer program and change the course of execution. The result of successful code injection can be disastrous, for example by allowing computer worms to propagate.

Network security malicious code binary search method and system

The invention provides a network security malicious code binary search method and system, and relates to the technical field of data processing, and the method comprises the steps: calculating the multi-dimensional structural similarity between a to-be-detected binary file and each standard binary reference file based on a function level control flow semantic feature vector; determining a finally matched standard binary reference file according to the multi-dimensional structural similarity; performing fine-grained difference analysis on the binary file to be detected and the finally matched standard binary reference file to obtain a fine-grained difference analysis result; and on the basis of a fine-grained difference analysis result, in combination with sensitive data operation behavior feature detection, judging whether the to-be-detected binary file is a maliciously tampered version, and positioning a malicious code injection point. According to the method, the defects that in the prior art, dependence on fixed features is too high, and compilation optimization is sensitive are overcome.
Owner:BEIJING HANGYUN SCI & TECH CO LTD

Method for realizing game acceleration in iOS jailbreak-free environment

The invention belongs to the technical field of iOS mobile development, and particularly relates to a method for realizing game acceleration in an iOS jailbreak-free environment, which comprises a static reconstruction subsystem, a runtime interception subsystem, a strategy scheduling subsystem and a safety and recovery subsystem, the combined use method of each system comprises the following steps: S1, performing analysis, code injection and mapping table generation on a Mach-O file of a target application in an offline stage; s2, embedding into a target application; s3, providing a time virtualization module, a rendering scheduling module, a network optimization module and a resource preloading module; and S4, verifying the integrity of the mapping table, and verifying the signature state. According to the method, high-compatibility and non-intrusive deep performance optimization is realized, static analysis and reconstruction are performed on an application installation package in an offline stage, a key function is accurately positioned by analyzing an internal structure of the application installation package, and a customized code signed by a developer is injected, so that the modified application can normally pass system security verification and be installed.
Owner:XIAMEN 3733 NETWORK TECHNOLOGY CO LTD

Source code sql injection vulnerability judgment method, computer device and readable storage medium

PendingCN122365502AMultiple injectionTest input
This application discloses a method, computer device, and readable storage medium for determining SQL injection vulnerabilities in source code, belonging to the field of source code security detection technology. The method includes the following steps: responding to an SQL injection detection command in the source code, generating a set of legal input parameters based on a legal input scenario corresponding to the source code, and generating a set of test input parameters based on an injection statement library; wherein the injection statement library includes multiple injection statement templates; based on the set of legal input parameters and the source code, collecting first execution data through code instrumentation; based on the set of test input parameters and the source code, collecting second execution data through code instrumentation; and determining SQL injection vulnerabilities in the source code based on the first execution data and the second execution data. This application can reduce the false positive rate of SQL injection vulnerability detection and improve the targeting of SQL injection vulnerability detection.
Owner:江西省科技基础条件平台中心(江西省计算中心)

Intelligent evaluation and optimization method and system for software performance indicators based on large models

The application relates to the technical field of software performance evaluation optimization, in particular to a software performance index intelligent evaluation and optimization method and system based on a large model, which comprises the following steps: collecting target software runtime performance monitoring data and source code structure information, inputting a pre-trained general large language model, generating a performance bottleneck preliminary natural language description through pattern recognition and feature extraction, constructing a structured performance problem positioning map based on the description, automatically generating performance detection probe code, injecting the performance detection probe code into a running environment to collect fine-grained indexes, performing multidimensional correlation analysis on the fine-grained indexes and original monitoring data, correcting the map to form a quantitative problem root cause report, and generating a code optimization scheme list containing code segment positioning, optimization fragments and resource influences by the large model. The application realizes intelligent identification, root cause quantification and accurate optimization of software performance bottlenecks.
Owner:BEIJING HUAXIN MEASUREMENT & CONTROL TECH CO LTD

Systems, methods, and media for generating user alerts

PendingUS20260100939A1Securing communicationInternet trafficCode injection
Mechanisms, including systems, methods, and media, for generating alerts are provided, the mechanisms including: receiving an application to be executed on a user device; injecting code into the application using a hardware processor; determining that network traffic violates a policy; and generating an alert message that indicates to the code that an alert is to be generated to a user. In some embodiments, the application is a web page that is to be executed by a browser on the user device. In some embodiments, the policy is a data loss prevention policy. In some embodiments, the mechanisms further include blocking the network traffic. In some embodiments, the mechanisms further include determining that the application is to have code injected into it based on a source or a classification of a source of the application.
Owner:SKYHIGH SECURITY LLC

Network security malware binary search method and system

The application provides a network security malicious code binary search method and system, and relates to the technical field of data processing.The method comprises the following steps: based on a function level control flow semantic feature vector, the multi-dimensional structural similarity between a to-be-detected binary file and each standard binary reference file is calculated; according to the multi-dimensional structural similarity, the final matched standard binary reference file is determined; the to-be-detected binary file and the final matched standard binary reference file are subjected to fine-grained difference analysis, and a fine-grained difference analysis result is obtained; based on the fine-grained difference analysis result, combined with sensitive data operation behavior feature detection, it is judged whether the to-be-detected binary file is a malicious tampered version, and a malicious code injection point is located.The application overcomes the defects that the prior art is too dependent on fixed features and sensitive to compilation optimization.
Owner:BEIJING HANGYUN SCI & TECH CO LTD

Method for obtaining operation information of application program and related equipment

PendingCN121646764AHardware monitoringComputer hardwareCode injection
The embodiment of the invention provides a method for obtaining operation information and related equipment. The invention provides an efficient scheme for obtaining the operation information of the application program. The method includes: when a stream conversion method in a performance analysis application is triggered, an extended Berkeley packet filter (eBPF) virtual machine (VM) running in a kernel space obtains thread data, the first thread data comprises N table entries, each table entry in the N table entries corresponds to one method in the performance analysis application, and the first thread data comprises a first thread data and a second thread data, each table entry in the N table entries corresponds to one method in the performance analysis application, and each table entry in the N table entries corresponds to one method in the performance analysis application. The N table items comprise a first table item, and the first table item corresponds to the triggered stream conversion method; the eBPF VM determines a target method according to the thread data, and the target method is called by the triggered stream conversion method; the eBPF VM performs performance analysis on the performance analysis application program to obtain a stack tracking result, the stack tracking result comprises a plurality of table entries, the table entries are in one-to-one correspondence with a plurality of methods, the table entries comprise a second table entry, and the second table entry corresponds to the target method; a collector running in a user space obtains the thread data and the stack tracking result from the eBPF VM; and the collector determines operation information of the performance analysis application program according to the thread data and the stack tracking result. According to the technical scheme, the eBPF VM can perform performance analysis on the performance analysis application program in the kernel space. In addition to the performance analysis application, the eBPF VM may obtain thread data and stack tracking results for other applications. No code is injected into the performance analysis application and / or the user space of the performance analysis application so that no damage is caused by code injection.
Owner:HUAWEI CLOUD COMPUTING TECHNOLOGIES CO LTD

Code injection method and device, storage medium and computer equipment

The invention provides a code injection method and device, a storage medium and computer equipment, and the method comprises the steps: determining target clients passing verification based on a client identifier, operation environment information and authority information of each registered client, and determining a target code warehouse which is associated with each target client and accords with a preset white list; according to the code injection configuration of each target client, obtaining a target injection code of each target client from a corresponding target code warehouse; in the unified operation framework, compiling and integrating each target injection code, and generating a to-be-injected Agent matched with the corresponding target client; and distributing each to-be-injected Agent to the corresponding target client, and receiving an Agent injection result and an operation state returned by each target client, so as to confirm the Agent injection state of the corresponding target client. Therefore, unified management and controllable execution of code injection are realized, and the controllability of the code injection process is improved.
Owner:GUANGZHOU PINWEI SOFTWARE CO LTD

Micro-front-end implementation method and device applied to WeChat applet development

The invention relates to the technical field of computers, in particular to a micro-front-end implementation method and device applied to WeChat applet development, and the method comprises the steps: obtaining applet product codes generated by a plurality of frameworks; performing fusion processing on the applet product codes generated by the plurality of frameworks through a compiling platform plug-in; and injecting the fused code into the basic applet to form a fusion product which can be published and online. Therefore, the problems that in the related technology, a micro-front-end cross-frame or cross-version function developed by a WeChat applet is difficult to reuse, project technology upgrading is blocked and the like are solved, the research and development cost and the maintenance cost of an applet project are reduced, and project technology upgrading iteration is smoother.
Owner:BEIJING BAILONGMA TECHNOLOGY CO LTD

Code debugging method based on low-code platform

The invention relates to the technical field of code debugging, and discloses a code debugging method based on a low-code platform, according to the code debugging method based on the low-code platform, a monitor module is arranged, a debugging mark clearing event is monitored in real time, a thread is interrupted in time when debugging is stopped, resources are recycled, resource occupation is avoided, and the debugging efficiency is improved. The overall performance of the debugging process is improved; meanwhile, a code injection module is used for adding a blocking mark and replacing the blocking mark with a blocking code, so that the code can be accurately paused when running to a breakpoint line, and the limitation that a low-code platform cannot perform line-level debugging is broken through; the debugging thread and the user operation thread are split and managed by the debugging thread module and the debugging operation thread module respectively, decoupling of user operation and code execution is achieved, the thread safety problem in the debugging process is effectively solved, and meanwhile the code execution performance is improved.
Owner:广州市玄瞳科技有限公司

Malicious code injection detector

The present disclosure provides various systems, methods, and apparatuses for detecting features of interest in source code. For example, in various aspects, a computer-implemented method is provided. The computer-implemented method may include receiving candidate source code, and segmenting the candidate source code into segments. The computer-implemented method may also include transforming, by an encoder model, the segment into a vector. Each of the vectors may correspond to a different one of the segments. The computer-implemented method may also include generating a tensor based on the vector, and applying the tensor to a decoder model. The computer-implemented method may also include determining, by the decoder model, a probability that a feature of interest exists in the candidate source code. In one aspect, the feature of interest may include malicious code injection.
Owner:VISA INTERNATIONAL SERVICE ASSOCIATION

Webpack-based anti-breakpoint debugging method, storage medium and electronic equipment

The invention provides an anti-breakpoint debugging method based on Webpack, a storage medium and electronic device.The method comprises the steps that a server side determines version information of the Webpack according to a compiler object of the Webpack; if it is recognized that the current operation environment is not the development environment, obtaining an anti-breakpoint debugging script; according to the version information of the Webpack, determining corresponding code injection strategy information; injecting the breakpoint-preventing debugging script into a target file of the front-end application according to the code injection strategy information; when a front-end application is accessed by a user side, the user side executes the following steps: triggering an anti-breakpoint debugging script to initialize so as to determine whether to start an anti-breakpoint debugging function or not; and if it is determined that the breakpoint-preventing debugging function is enabled after the initialization of the breakpoint-preventing debugging script is completed, running the breakpoint-preventing debugging script so as to monitor a breakpoint debugging behavior of the user side according to a preset mode in the breakpoint-preventing debugging script. The quick breakpoint-preventing debugging method deployment is realized, and the method has the advantages of simplicity in operation, high efficiency and low cost.
Owner:ZHEJIANG HUIRONG NETWORK TECH CO LTD

Accelerated code injection detection with operating system-controlled memory attributes

ActiveDE602018092208T2Operational systemCode injection
Owner:MICROSOFT TECHNOLOGY LICENSING LLC

A method and system for automated deployment and intelligent operation and maintenance of Node.js applications

PendingCN122308845ACommand-line interfaceHealth check
This invention discloses a method and system for automated deployment and intelligent operation and maintenance of Node.js applications, belonging to the field of computer software technology. The method includes: Step S1 receiving a unified configuration file, including application layer configuration, process management configuration, monitoring configuration, hot update configuration, and dynamic process pool configuration; Step S2 automatically injecting monitoring middleware and health check middleware through code injection technology; Step S3 real-time collection of indicators and threshold comparisons, automatic adjustment of the number of worker processes, and updating the load balancer list through a dynamic load balancer adapter; Step S4 performing a three-stage hot update of preheating-switching-shutdown; Step S5 monitoring alarms and automatically rolling back or scaling up according to a self-healing strategy. The system includes a command-line interface module, a configuration management module, a process orchestration engine, a dynamic load balancer adapter, a monitoring and measurement module, an intelligent decision engine, and an operation and maintenance audit and visualization module. This invention solves the technical problems of complex deployment and operation and maintenance of existing Node.js applications, service interruptions during updates, low resource utilization, and fragmented observation and governance.
Owner:山东齐鲁壹点传媒有限公司 +1

Visual data processing method and device, electronic equipment, storage medium and program product

The invention provides a visual data processing method and device, electronic equipment, a storage medium and a program product, relates to the technical field of visual data processing, and is used for realizing visual experience of plug and play of data through automatic data loading and traceless code injection. The method comprises the following steps: acquiring a data file, and storing the data file in a temporary directory; identifying the format of the data file, calling a corresponding loading function based on the format of the data file, and generating a data loading code based on the temporary directory stored in the data file and the corresponding loading function; receiving a user code from a client, and preposing the data loading code into the user code to generate a complete executable code; and executing the complete executable code, generating a data visualization result, and sending the data visualization result to the client.
Owner:CHINA UNITED NETWORK COMM GRP CO LTD

Application test method, system, device, electronic equipment, storage medium and program product

PendingCN122332263ACode generationUser input
This description and embodiment provides an application testing method, system, apparatus, electronic device, storage medium, and program product. The solution provided in this embodiment allows a user-inputted simulation requirement to indicate the target object to be simulated for testing a target application. Further, after retrieving relevant code generation knowledge from a knowledge base based on the simulation requirement, simulation code for implementing the simulated target object can be generated based on the retrieved code generation knowledge. Thus, injecting the simulation code into the target application allows it to be executed during the target application's runtime, thereby obtaining the test results of the target application.
Owner:ANT BLOCKCHAIN TECHNOLOGY (SHANGHAI) CO LTD

A method for realizing game acceleration in an iOS jailbreak-free environment

The application belongs to the technical field of iOS mobile development, and particularly relates to a method for realizing game acceleration in an iOS jailbreak-free environment, which comprises a static reconstruction subsystem, a runtime interception subsystem, a strategy scheduling subsystem, a security and recovery subsystem, and a combination use method of the systems as follows: S1, Mach-O files of a target application are analyzed, code injection is carried out, and a mapping table is generated in an offline stage; S2, the target application is embedded; S3, time virtualization, rendering scheduling, network optimization and resource preloading modules are provided; and S4, mapping table integrity is checked, and a signature state is verified. The application realizes high compatibility and non-intrusive deep performance optimization, carries out static analysis and reconstruction on an application installation package in an offline stage, accurately locates a key function by analyzing an internal structure, and injects customized code signed by a developer, so that the modified application can pass system security verification and be installed normally.
Owner:XIAMEN 3733 NETWORK TECHNOLOGY CO LTD

A multi-thread software crash information collection method and device and related medium

The application discloses a kind of multithread software crash information collection method, device and related medium, the method includes: pre-setting a global static hash table;When the code program of software is developed and completed, the monitoring object is implanted by code injection tool to code program;When code program runs to target function, call constructor;The thread ID of current thread is obtained by constructor, and the first crash identification string list associated with thread ID is obtained in hash table;When target function runs end, call release constructor;The thread ID of current thread is called by release constructor, and the second crash identification string list associated with thread ID is obtained in hash table;Obtain the target list of crash identification string list not empty;List content collection and analysis of target list.This application can improve the collection efficiency of software crash information, reduce the collection and analysis cost of software crash information.
Owner:AFIRSTSOFT CO LTD

Method and system for protecting a checkout transaction from malicious code injection

A computer-implemented method for detecting malicious code injection into checkout operations, the method including receiving a report regarding a checkout operation; determining based on the report that a checkout operation includes one or more events satisfying a first criterion; determining that a modification of customizable software code related to the checkout operation satisfies a second criterion; and responsive to the satisfaction of the first criterion and the second criterion, providing an indication of a detection of a potential malicious code injection into the checkout operation.
Owner:SHOPIFY INC

A method, apparatus, electronic device, and storage medium for incremental code injection.

PendingCN122086461AIntegrity guaranteedAddress the flaw of not being context awareCode refactoringProgram documentationObject codeCode injection
This invention discloses a code incremental injection method, apparatus, electronic device, and storage medium, relating to the field of computer software development technology. The method includes: obtaining a syntax tree representation of target code; receiving a functional incremental description, wherein the functional incremental description defines the behavioral characteristics of the function to be injected; determining the injection position in the syntax tree representation based on the behavioral characteristics; generating a structured code fragment based on the code context corresponding to the injection position and the code template associated with the functional incremental description; integrating the structured code fragment into the injection position to obtain an updated syntax tree representation; and outputting the updated target code based on the updated syntax tree representation. This invention is applicable to any software development scenario requiring automated incremental expansion of existing source code, and can solve the problem that existing technologies cannot automatically determine appropriate positions in the source code and inject adaptable code according to functional requirements while maintaining the integrity of existing handwritten code.
Owner:BEIJING TEAMSUN TECH

Unsupervised malicious code detection method and system for predicting cohesion change based on function name

The invention provides an unsupervised malicious code detection method and an unsupervised malicious code detection system for predicting cohesion change based on a function name. The unsupervised malicious code detection method and the unsupervised malicious code detection system are used for solving the problems that existing malicious code detection depends on a large amount of labeled data and the detection capability is insufficient in the face of unknown variants. According to the method, function name prediction serves as an index for measuring function cohesion, a function name is predicted through a pre-training code language model under the condition that the function name is covered, the cohesion of name prediction is calculated, and changes of cohesion values before and after function updating are compared. And if the reduction of the cohesion exceeds a threshold value, judging that malicious code injection suspicion exists and giving an alarm. According to the method, unknown malicious code variants can be detected without depending on a malicious code feature library, so that the detection capability on novel threats is improved; and the used indexes can reflect the semantic consistency of the codes, have universality for different items and coding styles, and are not easily bypassed by code obfuscation means, so that abnormal modifications in the source codes can be found in time.
Owner:NANJING UNIV OF POSTS & TELECOMM

Code performance detection method and device, equipment and storage medium

ActiveCN110990271BError detection/correctionObject codeCode injection
The application discloses a code performance detection method, device and equipment and a storage medium. The method comprises the following steps: obtaining preset performance statistical code capable of detecting the performance of a target statement block, so that the object of code performance detection is refined to part of statements in to-be-detected source code, and the limitation that only functions in to-be-detected code can be taken as the minimum refined object in the prior art is broken; injecting the preset performance statistical code into the to-be-detected source code, so that the performance of the target statement block in the to-be-detected source code can be detected through the preset performance statistical code; obtaining first and second performance statistical data, so that the execution condition inside a function in the target code can be understood, and the target code can be subjected to more detailed performance analysis compared with the prior art, and the accuracy of the code performance detection result is improved.
Owner:WEBANK (CHINA)

Code injection prevention for communication devices

PendingUS20260100961A1Securing communicationInstrumentsAttackCode injection
Techniques related to the management of communication devices using a combination of local and centralized blockchains to enable the detection of state changes that deviate from the expected behaviors are disclosed. In one example aspect, a method for detecting code injection activity in communication devices by a machine learning based platform includes determining, by a verification system, baseline information about a communication device; detecting a state change of the communication device, responsive to the state change of the communication device; appending, by the verification system, a current-state block representing the state change to a prior-state block representing a previous state of the communication device in a blockchain; and detecting whether a suspicious attack has occurred by comparing the payload of the current-state block to the baseline information.
Owner:T MOBILE US INC

Secure initial program load (IPL) code loading attributes facility

A method, system, and computer program product are provided for preventing malicious code injection during Initial Program Load (IPL). A secure code loading attributes block (SCLAB) is appended to a variable sized signed binary code component to generate a combined component. The variable sized signed binary code component is Operating System (OS) code for an initial program load (IPL) process. The SCLAB comprises contents that include a length field, an identifier, flag fields, a load program status word (PSW) and a load address. The combined component is digitally signed. During IPL, the unsigned component table entries associated with the signed component are verified against the SCLAB contents.
Owner:INTERNATIONAL BUSINESS MACHINE CORPORATION