Invention Grant
- Patent Title: System, method, and apparatus for modular, string-sensitive, access rights analysis with demand-driven precision
-
Application No.: US14033503Application Date: 2013-09-22
-
Publication No.: US09858419B2Publication Date: 2018-01-02
- Inventor: Julian Timothy Dolby , Emmanuel Geay , Marco Pistoia , Barbara G. Ryder , Takaaki Tateishi
- Applicant: International Business Machines Corporation
- Applicant Address: US NY Armonk
- Assignee: INTERNATIONAL BUSINESS MACHINES CORPORATION
- Current Assignee: INTERNATIONAL BUSINESS MACHINES CORPORATION
- Current Assignee Address: US NY Armonk
- Agency: Patent Portfolio Builders PLLC
- Main IPC: G06F17/00
- IPC: G06F17/00 ; H04L29/06 ; G06F21/57 ; G06F21/53 ; G06F21/62

Abstract:
A static analysis for identification of permission-requirements on stack-inspection authorization systems is provided. The analysis employs functional modularity for improved scalability. To enhance precision, the analysis utilizes program slicing to detect the origin of each parameter passed to a security-sensitive function. Furthermore, since strings are essential when defining permissions, the analysis integrates a sophisticated string analysis that models string computations.
Public/Granted literature
Information query