Invention Grant
- Patent Title: Static security analysis using a hybrid representation of string values
-
Application No.: US15219908Application Date: 2016-07-26
-
Publication No.: US09940464B2Publication Date: 2018-04-10
- Inventor: Salvatore A. Guarnieri , Marco Pistoia , Omer Tripp
- Applicant: INTERNATIONAL BUSINESS MACHINES CORPORATION
- Applicant Address: US NY Armonk
- Assignee: INTERNATIONAL BUSINESS MACHINES CORPORATION
- Current Assignee: INTERNATIONAL BUSINESS MACHINES CORPORATION
- Current Assignee Address: US NY Armonk
- Agency: Tutunjian & Bitetto, P.C.
- Agent Daniel P. Morris
- Main IPC: G06F21/57
- IPC: G06F21/57 ; G06F17/27 ; H04L29/06 ; G06F21/55 ; G06F17/21 ; G06F17/22 ; G06F21/56

Abstract:
Methods for creating a hybrid string representation include determining string components from input string information that may be represented concretely by comparing the one or more components to a set of known concretizations using a processor. The set of known concretizations includes string configurations that cannot be interfered with by an attacker. All string components that could not be represented concretely are abstracted. A hybrid string representation is created that includes at least one concrete string component and at least one abstracted string component.
Public/Granted literature
- US20160335434A1 STATIC SECURITY ANALYSIS USING A HYBRID REPRESENTATION OF STRING VALUES Public/Granted day:2016-11-17
Information query