System and method for information flow analysis of application code
US11783054B2 · kind B2 · utility
Assignee
Inventors
Key dates
| Filing date | Oct 21, 2022 |
| Grant date | Oct 10, 2023 |
| Priority date | — |
| Expiry date | Oct 21, 2042 |
Classification
- Technology area (CPC G)Physics
- CPC primaryG06F2221/033
- WIPO fieldComputer technology
- WIPO sectorElectrical engineering
Abstract
A method and system for security flow analysis of application code comprising: detecting data flows in a code base; and extracting an information flow, comprising determining a primary data flow by identifying a data flow that contains exposed data, and extending the primary data flow through descriptor data flows, wherein the descriptor data flows are associated with the set of data tracked by the primary data flow; wherein the information flow is a high level flow description that exposes the application code vulnerabilities based on the primary data flow and all associated descriptor data flows.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.