A
service system that diagnoses the
vulnerability of a
web service in real time mode and provides the result information thereof according to the present invention receives the input of a user
web service address through the
web service, automatically visits the corresponding web service to perform the real-time analysis on a
web page and check if the
web page has a
vulnerability, and transmits the result information to a user PC. The
service system can provide an intuitive service by displaying the discovery of the
vulnerability, the procedure and an external URL linked to the
web page are displayed on the user screen; find out the possibility of an outflow of the information contained in the URL by checking, on the basis of the web
page analysis, whether a symbol or
reserved word (
system command) among the factors has been filtered; and display the classification of vulnerabilities of respective DBs by analyzing the result to be sent to an
object system before being displayed on the web page. Further, the
service system retains the data on the vulnerability of each DB in a program as a resource to compare the data with the result received from the web service and identify a problem if present; includes a
script analysis section; and conducts an analysis on links according to an analyzed portion of an index page sot that the user can see the checking procedure via a taken place link in real time mode as well as the diagnosis progress that has been proceeded up to that point whenever desired and find links being connected. Moreover, when the service
system analyzes the web page, the user can easily check an external link section and detect any external domain, if present, which spreads a malicious code in the web service. In addition, the service
system allows the user to check over
the internet the items for the service diagnosis selected by the user and the diagnosis result, and thus to personally see the problems and solutions therefor.