Cyber security testing for authorized services
US10915640B2 · kind B2 · utility
Assignee
Inventors
Key dates
| Filing date | Oct 1, 2018 |
| Grant date | Feb 9, 2021 |
| Priority date | — |
| Expiry date | Jul 30, 2039 |
Classification
- Technology area (CPC G)Physics
- CPC primaryG06F2221/034
- WIPO fieldComputer technology
- WIPO sectorElectrical engineering
Abstract
A system includes a memory system and a processing system operably coupled to the memory system. The processing system is configured to perform operations including setting a target register to point to a first protected storage location of the memory system resulting in a protection exception upon access, calling an authorized service, and confirming that the authorized service uses the target register based on detecting the protection exception. The target register is adjusted to point to a parameter list including one or more known values and a pointer to a second protected storage location resulting in the protection exception upon access to confirm use of a value of the parameter list responsive to calling the authorized service. Parameter list testing and target register testing is repeated for locations in the parameter list and target registers to construct a testing profile for vulnerability testing of the authorized service.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.