The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Jun. 14, 2022

Filed:

Mar. 26, 2020
Applicant:

Naver Cloud Corporation, Seongnam-si, KR;

Inventors:

Bong Goo Kang, Seongnam-si, KR;

Min Seob Lee, Seongnam-si, KR;

Won Tae Jang, Seongnam-si, KR;

June Ahn, Seongnam-si, KR;

Jihwan Yoon, Seongnam-si, KR;

Assignee:

NAVER CLOUD CORPORATION, Seongnam-si, KR;

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 9/40 (2022.01); G06F 16/951 (2019.01); H04L 67/02 (2022.01); G06F 21/57 (2013.01); H04L 61/4505 (2022.01);
U.S. Cl.
CPC ...
H04L 63/1433 (2013.01); G06F 16/951 (2019.01); H04L 63/1416 (2013.01); H04L 63/1483 (2013.01); H04L 67/02 (2013.01); G06F 21/577 (2013.01); H04L 61/1505 (2013.01);
Abstract

A method for analyzing vulnerabilities may include: an analysis target URL receiving step of receiving a plurality of analysis target uniform resource locator (URL) addresses extracted from the analysis target server; an identification key setting step of setting respective identification keys corresponding to the plurality of analysis target URL addresses; a vulnerability analyzing step of performing a simulated attack so as to access the external server by the analysis target server by inserting an analysis hypertext transfer protocol (HTTP) request sentence including a URL address of an external server and the identification key into the analysis target URL address; an access record checking step of requesting an access record of the analysis target server to the external server; and a vulnerability extracting step of extracting a vulnerability of the analysis target server by using the identification key included in the access record.


Find Patent Forward Citations

Loading…