Invention Grant
- Patent Title: System and method for internet security
- Patent Title (中): 互联网安全的系统和方法
-
Application No.: US12939766Application Date: 2010-11-04
-
Publication No.: US08578487B2Publication Date: 2013-11-05
- Inventor: Derek A. Soeder
- Applicant: Derek A. Soeder
- Applicant Address: US CA Irvine
- Assignee: Cylance Inc.
- Current Assignee: Cylance Inc.
- Current Assignee Address: US CA Irvine
- Agency: Mintz Levin Cohn Ferris Glovsky and Popeo, P.C.
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
A computer implemented method for preventing SQL injection attacks comprises intercepting a web request associated with a web service at a first software hook in a first web service execution context, persisting at least a portion of the intercepted web request in a storage location associated with the first software hook and accessible to at least one additional execution context, intercepting a database query generated by at least one web service processing operation at a second software hook associated with the execution of the query, wherein the query is generated in response to the intercepted web request and the second hook retrieves the persisted portion of the intercepted web request, comparing a portion of the persisted portion of the intercepted web request with at least a portion of the intercepted database query, and determining, prior to the query being executed, whether the query corresponds to a potential SQL injection attack.
Public/Granted literature
- US20120117644A1 System and Method for Internet Security Public/Granted day:2012-05-10
Information query