Invention Grant
- Patent Title: Tailored security configuration of least-privilege applications
-
Application No.: US16809928Application Date: 2020-03-05
-
Publication No.: US11336680B2Publication Date: 2022-05-17
- Inventor: Hugo Guiroux , Christopher Ferreira , Matthias Neugschwandtner , Roxana Bradescu
- Applicant: Oracle International Corporation
- Applicant Address: US CA Redwood Shores
- Assignee: Oracle International Corporation
- Current Assignee: Oracle International Corporation
- Current Assignee Address: US CA Redwood Shores
- Agency: Hickman Becker Bingham Ledesma LLP
- Main IPC: H04L29/00
- IPC: H04L29/00 ; H04L29/06 ; G06F21/62 ; H04L69/16

Abstract:
Techniques for tailoring security configurations for least-privilege applications are provided. In one technique, multiple software artifacts associated with a software application are identified. For each software artifact, a call graph is generated, the call graph is added to a set of call graphs, and a set of dependencies for the software artifact is detected. The set of call graphs are combined to generate a merged call graph. One or more portions of the merged call graph are pruned to generate a pruned call graph. Annotation data is stored that associates elements in the pruned call graph with the set of dependencies for each software artifact. Based on the annotation data, reachable dependencies are identified. Based on the reachable dependencies, a set of security policies is generated for the software application.
Public/Granted literature
- US20210281597A1 TAILORED SECURITY CONFIGURATION OF LEAST-PRIVILEGE APPLICATIONS Public/Granted day:2021-09-09
Information query