Source code mapping through context specific key word indexes and fingerprinting

    公开(公告)号:US10331441B2

    公开(公告)日:2019-06-25

    申请号:US15814064

    申请日:2017-11-15

    Abstract: The present disclosure describes a system and method that identifies locations in source code files that are associated with particular Web requests. The system generates a fingerprint for each Web request based at least in part on the parameters of each HTTP request. By fingerprinting the properties of the source code that generates each HTTP request, Web requests that are generated by executing the fingerprinted code can be traced back to specific source code files, and in some cases an exact line of code. In many examples, a webpage or an action on a webpage can be traced back to a line of source code that is associated with the request. This may allow a developer to find a software defect or security vulnerability by tracing Web requests of a running application and then mapping suspect Web requests back to corresponding lines of code.

    SOURCE CODE MAPPING THROUGH CONTEXT SPECIFIC KEY WORD INDEXES AND FINGERPRINTING

    公开(公告)号:US20180074818A1

    公开(公告)日:2018-03-15

    申请号:US15814064

    申请日:2017-11-15

    CPC classification number: G06F8/73 G06F8/36

    Abstract: The present disclosure describes a system and method that identifies locations in source code files that are associated with particular Web requests. The system generates a fingerprint for each Web request based at least in part on the parameters of each HTTP request. By fingerprinting the properties of the source code that generates each HTTP request, Web requests that are generated by executing the fingerprinted code can be traced back to specific source code files, and in some cases an exact line of code. In many examples, a webpage or an action on a webpage can be traced back to a line of source code that is associated with the request. This may allow a developer to find a software defect or security vulnerability by tracing Web requests of a running application and then mapping suspect Web requests back to corresponding lines of code.

    Tracking developer behavior with respect to software analysis tools

    公开(公告)号:US11663341B2

    公开(公告)日:2023-05-30

    申请号:US16723479

    申请日:2019-12-20

    CPC classification number: G06F21/577 G06F8/71 G06F8/77 G06F11/3604

    Abstract: Disclosed are various embodiments for tracking developer behavior with respect to software analysis tools. In one embodiment, a security analysis is performed upon a first revision of a program, where the security analysis is based at least in part on a plurality of rules. A first security issue found in the security analysis upon the first revision of the program is identified. The security analysis is performed upon a second revision of the program. A second security issue found in the security analysis upon the second revision of the program is identified. The rules are updated based at least in part on whether the first security issue is corrected in the second revision as determined based at least in part on a comparison of the first security issue to the second security issue.

Patent Agency Ranking