The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Nov. 09, 2021

Filed:

Jan. 01, 2018
Applicant:

Checkmarx Ltd., Ramat Gan, IL;

Inventors:

Maty Siman, Tel Aviv, IL;

Alexander Roichman, Petah Tikva, IL;

Shimon Eshkenazi, Bat-Yam, IL;

Assignee:

CHECKMARX LTD., Ramat Gan, IL;

Attorney:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
G06F 21/00 (2013.01); G06F 21/57 (2013.01); G06F 21/54 (2013.01); G06F 21/56 (2013.01);
U.S. Cl.
CPC ...
G06F 21/577 (2013.01); G06F 21/54 (2013.01); G06F 21/562 (2013.01); G06F 21/566 (2013.01); G06F 2221/033 (2013.01);
Abstract

A method for testing a software application program () includes storing in a vulnerability database records of security vulnerabilities identified in execution of the program. Each record includes a location field containing a respective signature indicative of a location in the execution at which a corresponding security vulnerability was detected and a metadata field indicative of a respective control flow path on which the corresponding security vulnerability occurred. Upon detecting a further security vulnerability at a given location in a subsequent execution of the program, a new signature of the given location is computed and compared to the location field of the records in the database. When no record is found to match the new signature, an indication is output to a developer of the program of an occurrence of a new security vulnerability.


Find Patent Forward Citations

Loading…