System and method for testing web applications with recursive discovery and analysis
US8566945B2 · kind B2 · utility
Assignee
Inventor
Key dates
| Filing date | Feb 11, 2005 |
| Grant date | Oct 22, 2013 |
| Priority date | — |
| Expiry date | Mar 1, 2032 |
Classification
- Technology area (CPC H)Electricity
- CPC primaryH04L63/20
- WIPO fieldDigital communication
- WIPO sectorElectrical engineering
Abstract
A recursive web crawling and analysis tool that includes conducting an initial crawl of a target to identify testable or analyzable objects. The objects are then parsed to identify vulnerabilities, as well as additional objects that can be analyzed. An attack is then launched against the analyzable objects in an effort to break or verify the vulnerabilities. During this attack, additional analyzable objects may be discovered. If such additional objects are discovered, the web crawler is invoked on the additional objects as well, and the results of the crawl are fed back into the parser and attacker functions.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.