Invention Grant
- Patent Title: Method and apparatus for preventing injection-type attack in web-based operating system
-
Application No.: US15527159Application Date: 2015-11-17
-
Publication No.: US10542040B2Publication Date: 2020-01-21
- Inventor: Evgeny Beskrovny , Maya Maimon , Yaacov Hoch
- Applicant: Samsung Electronics Co., Ltd.
- Applicant Address: KR Suwon-si
- Assignee: Samsung Electronics Co., Ltd.
- Current Assignee: Samsung Electronics Co., Ltd.
- Current Assignee Address: KR Suwon-si
- Agency: Jefferson IP Law, LLP
- Priority: KR10-2015-0142302 20151012
- International Application: PCT/KR2015/012352 WO 20151117
- International Announcement: WO2016/080735 WO 20160526
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04W4/60 ; G06F16/10 ; G06F16/958 ; G06F21/53 ; G06F21/56 ; H04W12/12 ; G06F17/27 ; G06F21/55 ; H04L29/08

Abstract:
The present disclosure relates to an intelligent service (e.g., a smart home, a smart building, a smart car, etc.) based on a 5G communication technology and an IoT related technology. In accordance with an embodiment of the present disclosure, a method is provided for detecting, by a web server in a wireless communication system, a malicious code which is injected into the command stream of a widget miming on a web-based OS in a device. The method includes: analyzing the widget in the web server; determining at least one invariant condition constantly maintained and conserved while the widget is running, on the basis of a result of the analyzing; generating a metadata file including data satisfying the at least one invariant condition; and associating the metadata file with the widget and providing the widget in a state in which the associated metadata file is included in the widget.
Public/Granted literature
- US20170357804A1 METHOD AND APPARATUS FOR PREVENTING INJECTION-TYPE ATTACK IN WEB-BASED OPERATING SYSTEM Public/Granted day:2017-12-14
Information query