Invention Grant
- Patent Title: Static security scanner for applications in a remote network management platform
-
Application No.: US16923049Application Date: 2020-07-07
-
Publication No.: US11429727B2Publication Date: 2022-08-30
- Inventor: Pavan Mohan
- Applicant: ServiceNow, Inc.
- Applicant Address: US CA Santa Clara
- Assignee: ServiceNow, Inc.
- Current Assignee: ServiceNow, Inc.
- Current Assignee Address: US CA Santa Clara
- Agency: Fletcher Yoder P.C.
- Main IPC: G06F21/57
- IPC: G06F21/57 ; H04L9/40

Abstract:
An example embodiment may involve a remote network management platform including a computational instance hosting a particular application. The particular application may be based on a unit of program code, use one or more database tables, and define one or more user roles with respect to accessing the program code and the database tables. A scanner application may be configured to: receive, from a client device, a request to scan the particular application; retrieve the particular application; conduct a static security scan by applying a set of rules that define security vulnerabilities, where the rules take into account (i) relationships between the user roles and the unit of program code, and (ii) relationships between the user roles and the database table; and transmit, to the client device, a representation of a web page that contains observed security vulnerabilities of the particular application.
Public/Granted literature
- US20200342114A1 Static Security Scanner for Applications in a Remote Network Management Platform Public/Granted day:2020-10-29
Information query