Patent · US Active

Apparatus and method for analyzing security vulnerabilities

US11363054B2 · kind B2 · utility

0Cited by
3References
12Claims
0Family size

Assignee

Inventors

Key dates

Filing dateMar 26, 2020
Grant dateJun 14, 2022
Priority date
Expiry dateFeb 17, 2041

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L61/4505
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A method for analyzing vulnerabilities may include: an analysis target URL receiving step of receiving a plurality of analysis target uniform resource locator (URL) addresses extracted from the analysis target server; an identification key setting step of setting respective identification keys corresponding to the plurality of analysis target URL addresses; a vulnerability analyzing step of performing a simulated attack so as to access the external server by the analysis target server by inserting an analysis hypertext transfer protocol (HTTP) request sentence including a URL address of an external server and the identification key into the analysis target URL address; an access record checking step of requesting an access record of the analysis target server to the external server; and a vulnerability extracting step of extracting a vulnerability of the analysis target server by using the identification key included in the access record.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.