Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

49 results about "Code injection" patented technology

Code injection is the exploitation of a computer bug that is caused by processing invalid data. Injection is used by an attacker to introduce (or "inject") code into a vulnerable computer program and change the course of execution. The result of successful code injection can be disastrous, for example by allowing computer worms to propagate.

Network security malicious code binary search method and system

The invention provides a network security malicious code binary search method and system, and relates to the technical field of data processing, and the method comprises the steps: calculating the multi-dimensional structural similarity between a to-be-detected binary file and each standard binary reference file based on a function level control flow semantic feature vector; determining a finally matched standard binary reference file according to the multi-dimensional structural similarity; performing fine-grained difference analysis on the binary file to be detected and the finally matched standard binary reference file to obtain a fine-grained difference analysis result; and on the basis of a fine-grained difference analysis result, in combination with sensitive data operation behavior feature detection, judging whether the to-be-detected binary file is a maliciously tampered version, and positioning a malicious code injection point. According to the method, the defects that in the prior art, dependence on fixed features is too high, and compilation optimization is sensitive are overcome.
Owner:BEIJING HANGYUN SCI & TECH CO LTD

Security protection method for remote code injection prevention of industrial software

The invention discloses a remote code injection prevention security protection method for industrial software, which belongs to the technical field of digital information transmission, and comprises the following steps: deploying a security protection client at an industrial equipment end and establishing a communication channel with a cloud server; obtaining a core code set of the industrial software, and protecting the core code set through the security protection client; when the industrial software runs, first environment characteristic data during running are collected through the safety protection client side, and abnormal behaviors are detected; and the cloud server obtains second environment characteristic data when the security protection client is started, and performs trust evaluation on the industrial equipment by adopting a multi-factor dynamic authentication strategy to obtain a total score of trust evaluation. According to the security protection method for remote code injection prevention of the industrial software, the problem that an existing industrial control system is low in security and reliability due to the fact that malicious operation carried out by an attacker in the operation process is difficult to deal with is solved.
Owner:KINGWAY FOSHAN ELECTRONICS TECH CO LTD

Method for detecting software vulnerabilities by code injection

The invention relates to a method, implemented by computer means, for determining a set of injections that can be used in an executable sequence, wherein the executable sequence uses a language (L), the method comprising: a) determining at least one entry point for the executable sequence; b) determining, on the basis of the entry point, a pattern (M) comprising at least one injection point for the executable sequence, wherein the pattern respects the language (L) of the executable sequence; c) for each injection point, extracting a set of constraints (C) associated with the injection point; d) determining, for each injection point, the set of injections that can be used on the basis of the pattern (M) to which the injection point belongs, of the associated set of constraints (C) and of the language (L).
Owner:CENT NAT DE LA RECH SCI (C N R S) +1

Auto generate security SDK code injections into custom application for run time LLM protection

The present application discloses a method, system, and computer system for securing code. The method includes (i) obtaining a code sample, (ii) detecting a call flow associated with the code sample, (iii) determining whether to inject a software development kit (SDK) to the code sample based at least in part on the call flow, and (iv) in response to determining to inject the SDK to the code sample: (a) automatically injecting the SDK to the code sample to obtain an SDK-injected code sample, and (b) providing the SDK-injected code sample.
Owner:PALO ALTO NETWORKS INC

Unity cross-platform SDK (Software Development Kit) intelligent access method, system and equipment and medium

The invention discloses a Unity cross-platform SDK (Software Development Kit) intelligent access method, system and device and a medium, and the method specifically comprises the following steps: when a plug-in is loaded, extracting project feature data by scanning Unity engineering assets and a code structure; based on the project feature data, triggering an intelligent decision engine to generate an SDK combination weight matrix and a platform differentiation configuration parameter set; based on the SDK combination weight matrix and the platform differentiation configuration parameter set, marking SDK dependency conflict points and code compatibility risks to form a conflict marking result; based on the conflict marking result, calling an adaptation strategy of a repair rule base, and executing conflict repair; after conflict repair is completed, hierarchical code injection operation is executed; after code injection is completed, pressure testing is executed through Monte Carlo simulation, and a testing result is fed back to the intelligent decision engine for SDK recommendation weight optimization. According to the invention, a scientific SDK access scheme is provided for developers, the SDK access efficiency and quality are improved, and the manual intervention cost and the error rate are reduced.
Owner:ANHUI SANQI JIYU NETWORK TECH CO LTD

Call request verification

PCT designated stageWO2025185573A8Interprogram communicationDigital data authenticationComputer networkCode injection
Disclosed in the embodiments of the present specification are a call request verification method and apparatus, and a storage medium and an electronic device. The method comprises: extracting identification information of a calling end from a call request by means of code injection, and verifying the identification information, so as to obtain a verification result; and if the verification result indicates that the identification information passes the verification, executing a call process on the basis of call information, so as to obtain a call result.
Owner:ALIPAY (HANGZHOU) INFORMATION TECH CO LTD

Method for realizing game acceleration in iOS jailbreak-free environment

The invention belongs to the technical field of iOS mobile development, and particularly relates to a method for realizing game acceleration in an iOS jailbreak-free environment, which comprises a static reconstruction subsystem, a runtime interception subsystem, a strategy scheduling subsystem and a safety and recovery subsystem, the combined use method of each system comprises the following steps: S1, performing analysis, code injection and mapping table generation on a Mach-O file of a target application in an offline stage; s2, embedding into a target application; s3, providing a time virtualization module, a rendering scheduling module, a network optimization module and a resource preloading module; and S4, verifying the integrity of the mapping table, and verifying the signature state. According to the method, high-compatibility and non-intrusive deep performance optimization is realized, static analysis and reconstruction are performed on an application installation package in an offline stage, a key function is accurately positioned by analyzing an internal structure of the application installation package, and a customized code signed by a developer is injected, so that the modified application can normally pass system security verification and be installed.
Owner:XIAMEN 3733 NETWORK TECHNOLOGY CO LTD

Source code sql injection vulnerability judgment method, computer device and readable storage medium

PendingCN122365502AMultiple injectionTest input
This application discloses a method, computer device, and readable storage medium for determining SQL injection vulnerabilities in source code, belonging to the field of source code security detection technology. The method includes the following steps: responding to an SQL injection detection command in the source code, generating a set of legal input parameters based on a legal input scenario corresponding to the source code, and generating a set of test input parameters based on an injection statement library; wherein the injection statement library includes multiple injection statement templates; based on the set of legal input parameters and the source code, collecting first execution data through code instrumentation; based on the set of test input parameters and the source code, collecting second execution data through code instrumentation; and determining SQL injection vulnerabilities in the source code based on the first execution data and the second execution data. This application can reduce the false positive rate of SQL injection vulnerability detection and improve the targeting of SQL injection vulnerability detection.
Owner:江西省科技基础条件平台中心(江西省计算中心)

Webpage code processing method and device, storage medium and electronic equipment

The invention discloses a webpage code processing method and device, a storage medium and electronic equipment, and relates to the field of information security. The method comprises the following steps: selecting a target code from business logic codes in a webpage for marking; the marked target code is encrypted and then uploaded to a server, and encryption basis information of the target code at least comprises a browsing path of the webpage, version information of the webpage and an identifier used when the target code is marked; when it is detected that the client displays a webpage, obtaining a target code in an encrypted state from a server according to the encryption basis information; and decrypting the target code in the encrypted state, and injecting the decrypted target code into a specified position of the webpage according to a code injection rule in the configuration information. The technical problem that in the prior art, when a webpage is displayed on a client side, core service logic codes are likely to be modified maliciously, and consequently software safety is poor is solved.
Owner:INDUSTRIAL AND COMMERCIAL BANK OF CHINA +1

Intelligent evaluation and optimization method and system for software performance indicators based on large models

The application relates to the technical field of software performance evaluation optimization, in particular to a software performance index intelligent evaluation and optimization method and system based on a large model, which comprises the following steps: collecting target software runtime performance monitoring data and source code structure information, inputting a pre-trained general large language model, generating a performance bottleneck preliminary natural language description through pattern recognition and feature extraction, constructing a structured performance problem positioning map based on the description, automatically generating performance detection probe code, injecting the performance detection probe code into a running environment to collect fine-grained indexes, performing multidimensional correlation analysis on the fine-grained indexes and original monitoring data, correcting the map to form a quantitative problem root cause report, and generating a code optimization scheme list containing code segment positioning, optimization fragments and resource influences by the large model. The application realizes intelligent identification, root cause quantification and accurate optimization of software performance bottlenecks.
Owner:BEIJING HUAXIN MEASUREMENT & CONTROL TECH CO LTD

Systems, methods, and media for generating user alerts

PendingUS20260100939A1Securing communicationInternet trafficCode injection
Mechanisms, including systems, methods, and media, for generating alerts are provided, the mechanisms including: receiving an application to be executed on a user device; injecting code into the application using a hardware processor; determining that network traffic violates a policy; and generating an alert message that indicates to the code that an alert is to be generated to a user. In some embodiments, the application is a web page that is to be executed by a browser on the user device. In some embodiments, the policy is a data loss prevention policy. In some embodiments, the mechanisms further include blocking the network traffic. In some embodiments, the mechanisms further include determining that the application is to have code injected into it based on a source or a classification of a source of the application.
Owner:SKYHIGH SECURITY LLC

Network security malware binary search method and system

The application provides a network security malicious code binary search method and system, and relates to the technical field of data processing.The method comprises the following steps: based on a function level control flow semantic feature vector, the multi-dimensional structural similarity between a to-be-detected binary file and each standard binary reference file is calculated; according to the multi-dimensional structural similarity, the final matched standard binary reference file is determined; the to-be-detected binary file and the final matched standard binary reference file are subjected to fine-grained difference analysis, and a fine-grained difference analysis result is obtained; based on the fine-grained difference analysis result, combined with sensitive data operation behavior feature detection, it is judged whether the to-be-detected binary file is a malicious tampered version, and a malicious code injection point is located.The application overcomes the defects that the prior art is too dependent on fixed features and sensitive to compilation optimization.
Owner:BEIJING HANGYUN SCI & TECH CO LTD

Secure process execution and data management with secured storage and code injection

Systems, methods, and apparatuses are disclosed for securing the use of secondary processes using secured storage and code injection. Techniques may include identifying sensitive data including at least one secret, storing the sensitive data in a secured storage location, and invoking a secondary process in a suspended mode. Techniques may further include injecting at least one first code element into the secondary process, the at least one first code element being configured to perform at least one operation associated with the sensitive data, and resuming the secondary process, wherein the injected first code element makes the stored sensitive data available to the secondary process.
Owner:CYBER ARK SOFTWARE LTD

Method for obtaining operation information of application program and related equipment

PendingCN121646764AHardware monitoringComputer hardwareCode injection
The embodiment of the invention provides a method for obtaining operation information and related equipment. The invention provides an efficient scheme for obtaining the operation information of the application program. The method includes: when a stream conversion method in a performance analysis application is triggered, an extended Berkeley packet filter (eBPF) virtual machine (VM) running in a kernel space obtains thread data, the first thread data comprises N table entries, each table entry in the N table entries corresponds to one method in the performance analysis application, and the first thread data comprises a first thread data and a second thread data, each table entry in the N table entries corresponds to one method in the performance analysis application, and each table entry in the N table entries corresponds to one method in the performance analysis application. The N table items comprise a first table item, and the first table item corresponds to the triggered stream conversion method; the eBPF VM determines a target method according to the thread data, and the target method is called by the triggered stream conversion method; the eBPF VM performs performance analysis on the performance analysis application program to obtain a stack tracking result, the stack tracking result comprises a plurality of table entries, the table entries are in one-to-one correspondence with a plurality of methods, the table entries comprise a second table entry, and the second table entry corresponds to the target method; a collector running in a user space obtains the thread data and the stack tracking result from the eBPF VM; and the collector determines operation information of the performance analysis application program according to the thread data and the stack tracking result. According to the technical scheme, the eBPF VM can perform performance analysis on the performance analysis application program in the kernel space. In addition to the performance analysis application, the eBPF VM may obtain thread data and stack tracking results for other applications. No code is injected into the performance analysis application and / or the user space of the performance analysis application so that no damage is caused by code injection.
Owner:HUAWEI CLOUD COMPUTING TECHNOLOGIES CO LTD

Code injection method and device, storage medium and computer equipment

The invention provides a code injection method and device, a storage medium and computer equipment, and the method comprises the steps: determining target clients passing verification based on a client identifier, operation environment information and authority information of each registered client, and determining a target code warehouse which is associated with each target client and accords with a preset white list; according to the code injection configuration of each target client, obtaining a target injection code of each target client from a corresponding target code warehouse; in the unified operation framework, compiling and integrating each target injection code, and generating a to-be-injected Agent matched with the corresponding target client; and distributing each to-be-injected Agent to the corresponding target client, and receiving an Agent injection result and an operation state returned by each target client, so as to confirm the Agent injection state of the corresponding target client. Therefore, unified management and controllable execution of code injection are realized, and the controllability of the code injection process is improved.
Owner:GUANGZHOU PINWEI SOFTWARE CO LTD

Micro-front-end implementation method and device applied to WeChat applet development

The invention relates to the technical field of computers, in particular to a micro-front-end implementation method and device applied to WeChat applet development, and the method comprises the steps: obtaining applet product codes generated by a plurality of frameworks; performing fusion processing on the applet product codes generated by the plurality of frameworks through a compiling platform plug-in; and injecting the fused code into the basic applet to form a fusion product which can be published and online. Therefore, the problems that in the related technology, a micro-front-end cross-frame or cross-version function developed by a WeChat applet is difficult to reuse, project technology upgrading is blocked and the like are solved, the research and development cost and the maintenance cost of an applet project are reduced, and project technology upgrading iteration is smoother.
Owner:BEIJING BAILONGMA TECHNOLOGY CO LTD

Method and device for updating digital certificate through code injection method

The invention relates to the technical field of network security, and discloses a method and device for updating a digital certificate through a code injection method, the method is applied to a computing device, and the method comprises the steps that the certificate attribute of an expired digital certificate is determined, and the expired digital certificate is obtained through judgment based on the validity period range of the digital certificate collected through the code injection method; the certificate attributes comprise a storage attribute, a file attribute and a running environment attribute, the storage attribute represents the storage position of the expired digital certificate, and the file attribute represents whether the expired digital certificate can be modified or not in the running process of the computing equipment; the running environment attribute represents whether the expired digital certificate can maintain the modified state after the computing device is restarted, determining the updating mode of the expired digital certificate based on the certificate attribute, and updating the expired digital certificate into the target digital certificate by adopting the updating mode through a code injection method, so that the updating method is more convenient and accurate, and the updating efficiency is improved. The potential safety hazard of expiration of the digital certificate is reduced; and the operation and maintenance cost is saved.
Owner:CHINA TELECOM NETWORK SECURITY TECH CO LTD

Code debugging method based on low-code platform

The invention relates to the technical field of code debugging, and discloses a code debugging method based on a low-code platform, according to the code debugging method based on the low-code platform, a monitor module is arranged, a debugging mark clearing event is monitored in real time, a thread is interrupted in time when debugging is stopped, resources are recycled, resource occupation is avoided, and the debugging efficiency is improved. The overall performance of the debugging process is improved; meanwhile, a code injection module is used for adding a blocking mark and replacing the blocking mark with a blocking code, so that the code can be accurately paused when running to a breakpoint line, and the limitation that a low-code platform cannot perform line-level debugging is broken through; the debugging thread and the user operation thread are split and managed by the debugging thread module and the debugging operation thread module respectively, decoupling of user operation and code execution is achieved, the thread safety problem in the debugging process is effectively solved, and meanwhile the code execution performance is improved.
Owner:广州市玄瞳科技有限公司

Malicious code injection detector

The present disclosure provides various systems, methods, and apparatuses for detecting features of interest in source code. For example, in various aspects, a computer-implemented method is provided. The computer-implemented method may include receiving candidate source code, and segmenting the candidate source code into segments. The computer-implemented method may also include transforming, by an encoder model, the segment into a vector. Each of the vectors may correspond to a different one of the segments. The computer-implemented method may also include generating a tensor based on the vector, and applying the tensor to a decoder model. The computer-implemented method may also include determining, by the decoder model, a probability that a feature of interest exists in the candidate source code. In one aspect, the feature of interest may include malicious code injection.
Owner:VISA INTERNATIONAL SERVICE ASSOCIATION

Webpack-based anti-breakpoint debugging method, storage medium and electronic equipment

The invention provides an anti-breakpoint debugging method based on Webpack, a storage medium and electronic device.The method comprises the steps that a server side determines version information of the Webpack according to a compiler object of the Webpack; if it is recognized that the current operation environment is not the development environment, obtaining an anti-breakpoint debugging script; according to the version information of the Webpack, determining corresponding code injection strategy information; injecting the breakpoint-preventing debugging script into a target file of the front-end application according to the code injection strategy information; when a front-end application is accessed by a user side, the user side executes the following steps: triggering an anti-breakpoint debugging script to initialize so as to determine whether to start an anti-breakpoint debugging function or not; and if it is determined that the breakpoint-preventing debugging function is enabled after the initialization of the breakpoint-preventing debugging script is completed, running the breakpoint-preventing debugging script so as to monitor a breakpoint debugging behavior of the user side according to a preset mode in the breakpoint-preventing debugging script. The quick breakpoint-preventing debugging method deployment is realized, and the method has the advantages of simplicity in operation, high efficiency and low cost.
Owner:ZHEJIANG HUIRONG NETWORK TECH CO LTD

Client code injection method and system, storage medium, and electronic device

The present disclosure relates to the technical field of computers, and provides a client code injection method and system, a computer readable storage medium and an electronic device. The method comprises the following steps: a first client uploads to-be-injected code and a preset graphical encoding image corresponding to the to-be-injected code to a network server; the network server receives and stores the to-be-injected code and the preset graphical encoding image corresponding to the to-be-injected code uploaded by the first client; a second client receives the preset graphical encoding image sent by the network server, obtains an encrypted access address of the to-be-injected code according to the preset graphical encoding image, acquires the to-be-injected code from the network server according to the encrypted access address, configures the to-be-injected code as a current execution file of the second client, executes the current execution file in the second client, and realizes injection of the to-be-injected code into the second client. The present scheme can avoid leakage of the to-be-injected code and improve the security of code injection.
Owner:NETEASE (HANGZHOU) NETWORK CO LTD

Method and device for automatically testing APP page

PendingCN120336149ASoftware testing/debuggingProgramming languageCode injection
The invention relates to an automatic testing method and device for an APP page, and the method comprises the steps: generating a unique buried point identifier for an obtained page element according to a buried point generation rule, and injecting the unique buried point identifier as a resource number into a page code of a webpage through a code injection technology, thereby achieving the buried point injection of the page element, and achieving the automatic testing of the page element. Starting an automatic test tool according to a received test request to obtain a complete page structure of the target APP, performing buried point sniffing on a complete page result through an Xpath sniffing technology to obtain element information of page elements of each page, judging the page elements corresponding to non-empty resource numbers in the element information as to-be-tested elements, and testing the to-be-tested elements according to the to-be-tested elements. And automatic testing is carried out. Therefore, coupling of the page elements and the image-text content is relieved through the unique buried point identification, the checking operation of the page elements and dependence of the Xpath are relieved, and when the APP page is subjected to high-frequency iteration, the to-be-tested elements can still be positioned through the unique buried point identification, and automatic testing is achieved.
Owner:FUJIAN FUNO MOBILE COMM TECH CO LTD

Software development system and development method based on Internet software theory

PendingCN121277481ASemantic analysisOffice automationSoftware systemCode injection
The invention discloses a software development system and a software development method based on an internet software theory. The system comprises an account registration and login module, a user detailed information acquisition module, a project information generation or acquisition module, a project data preprocessing module, an AI generation content selection module, a project content analysis module, a software system generation module, a manual tuning module and the like. The system has multiple functional module designs, introduces the AI technology to carry out deep semantic understanding and process derivation, and can process complex business logic. Meanwhile, the system supports code injection, and developers are allowed to write custom codes to achieve complex functions.
Owner:NANJING GUOTONG INTELLIGENT TECH

Code injection prevention for communication devices

ActiveUS12489764B2Securing communicationInstrumentsAttackCode injection
Techniques related to the management of communication devices using a combination of local and centralized blockchains to enable the detection of state changes that deviate from the expected behaviors are disclosed. In one example aspect, a method for detecting code injection activity in communication devices by a machine learning based platform includes determining, by a verification system, baseline information about a communication device; detecting a state change of the communication device, responsive to the state change of the communication device; appending, by the verification system, a current-state block representing the state change to a prior-state block representing a previous state of the communication device in a blockchain; and detecting whether a suspicious attack has occurred by comparing the payload of the current-state block to the baseline information.
Owner:T MOBILE US INC

An intelligent wave code injection data transmission method

The present invention discloses a method for transmitting data through intelligent wave code injection, which belongs to the field of intelligent injection technology. The method includes the steps of transmitting instructions from the ground to the underground and transmitting data from the underground to the ground; when implementing the step of transmitting instructions from the ground to the underground, the control system switches the wellhead regulating valve according to the preset coding rules based on the configuration of the upper computer to form a regular pressure change, thereby sending an instruction sequence to the underground water distributor; when implementing the step of transmitting data from the underground to the ground, in response to receiving the instruction sequence, the underground water distributor corresponding to each water injection layer, based on the indication of the instruction sequence, sequentially provides a constant flow according to the numerical value to be transmitted, or opens the water nozzle of a single underground water distributor, so that the ground detection device detects the numerical value, thereby obtaining the data transmitted from the underground. This method does not need to encode and transmit the numerical value by switching the water nozzle of the underground water distributor multiple times, eliminating the data encoding link, greatly saving data transmission time, and improving data transmission efficiency.
Owner:XIAN SITAN INSTR

Accelerated code injection detection with operating system-controlled memory attributes

ActiveDE602018092208T2Operational systemCode injection
Owner:MICROSOFT TECHNOLOGY LICENSING LLC

A method and system for automated deployment and intelligent operation and maintenance of Node.js applications

This invention discloses a method and system for automated deployment and intelligent operation and maintenance of Node.js applications, belonging to the field of computer software technology. The method includes: Step S1 receiving a unified configuration file, including application layer configuration, process management configuration, monitoring configuration, hot update configuration, and dynamic process pool configuration; Step S2 automatically injecting monitoring middleware and health check middleware through code injection technology; Step S3 real-time collection of indicators and threshold comparisons, automatic adjustment of the number of worker processes, and updating the load balancer list through a dynamic load balancer adapter; Step S4 performing a three-stage hot update of preheating-switching-shutdown; Step S5 monitoring alarms and automatically rolling back or scaling up according to a self-healing strategy. The system includes a command-line interface module, a configuration management module, a process orchestration engine, a dynamic load balancer adapter, a monitoring and measurement module, an intelligent decision engine, and an operation and maintenance audit and visualization module. This invention solves the technical problems of complex deployment and operation and maintenance of existing Node.js applications, service interruptions during updates, low resource utilization, and fragmented observation and governance.
Owner:山东齐鲁壹点传媒有限公司 +1

Visual data processing method and device, electronic equipment, storage medium and program product

The invention provides a visual data processing method and device, electronic equipment, a storage medium and a program product, relates to the technical field of visual data processing, and is used for realizing visual experience of plug and play of data through automatic data loading and traceless code injection. The method comprises the following steps: acquiring a data file, and storing the data file in a temporary directory; identifying the format of the data file, calling a corresponding loading function based on the format of the data file, and generating a data loading code based on the temporary directory stored in the data file and the corresponding loading function; receiving a user code from a client, and preposing the data loading code into the user code to generate a complete executable code; and executing the complete executable code, generating a data visualization result, and sending the data visualization result to the client.
Owner:CHINA UNITED NETWORK COMM GRP CO LTD

Application test method, system, device, electronic equipment, storage medium and program product

PendingCN122332263ACode generationUser input
This description and embodiment provides an application testing method, system, apparatus, electronic device, storage medium, and program product. The solution provided in this embodiment allows a user-inputted simulation requirement to indicate the target object to be simulated for testing a target application. Further, after retrieving relevant code generation knowledge from a knowledge base based on the simulation requirement, simulation code for implementing the simulated target object can be generated based on the retrieved code generation knowledge. Thus, injecting the simulation code into the target application allows it to be executed during the target application's runtime, thereby obtaining the test results of the target application.
Owner:ANT BLOCKCHAIN TECHNOLOGY (SHANGHAI) CO LTD

Method for detecting software vulnerabilities by code injection

A method implemented by computer means is proposed for determining a set of exploitable injections in an executable sequence, the executable sequence using a language (L), the method comprising: a) determining at least one entry point of the executable sequence, b) determining, from said entry point, a pattern (M) comprising at least one injection point of the executable sequence, the pattern respecting the language (L) of the executable sequence, c) for each injection point, extracting a set of constraints (C) associated with the injection point, d) determining, for each injection point, the set of exploitable injections from the pattern (M) to which the injection point belongs, the associated set of constraints (C) and the language (L). Abstract figure: Figure 2
Owner:CENT NAT DE LA RECH SCI (C N R S) +1