Invention Grant
- Patent Title: Framework for efficient security coverage of mobile software applications
- Patent Title (中): 移动软件应用程序高效安全覆盖框架
-
Application No.: US13775168Application Date: 2013-02-23
-
Publication No.: US09176843B1Publication Date: 2015-11-03
- Inventor: Osman Abdoul Ismael , Dawn Song , Ashar Aziz , Noah Johnson , Prashanth Mohan , Hui Xue
- Applicant: FireEye, Inc.
- Applicant Address: US CA Milpitas
- Assignee: FireEye, Inc.
- Current Assignee: FireEye, Inc.
- Current Assignee Address: US CA Milpitas
- Agency: Rutan & Tucker LLP
- Agent William W. Schaal
- Main IPC: G06F21/00
- IPC: G06F21/00 ; G06F11/36 ; G06F21/50 ; G06F21/53 ; G06F21/56 ; H04L29/06

Abstract:
A method is described that includes receiving an application and generating a representation of the application that describes specific states of the application and specific state transitions of the application. The method further includes identifying a region of interest of the application based on rules and observations of the application's execution. The method further includes determining specific stimuli that will cause one or more state transitions within the application to reach the region of interest. The method further includes enabling one or more monitors within the application's run time environment and applying the stimuli. The method further includes generating monitoring information from the one or more monitors. The method further includes applying rules to the monitoring information to determine a next set of stimuli to be applied to the application in pursuit of determining whether the region of interest corresponds to improperly behaving code.
Information query