Safety testing method, equipment, storage medium and device

A security testing and to-be-tested technology, applied in the field of information security, can solve the problems of low efficiency and poor effect of security testing, and achieve the effect of improving testing efficiency and effect

Active Publication Date: 2022-05-20
CHINA PING AN PROPERTY INSURANCE CO LTD
View PDF6 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0004] The main purpose of the present invention is to provide a security testing method, equipment, storage medium and device, aiming to solve the technical problem of low security testing efficiency and poor effect in the prior art

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Safety testing method, equipment, storage medium and device
  • Safety testing method, equipment, storage medium and device
  • Safety testing method, equipment, storage medium and device

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0046] It should be understood that the specific embodiments described herein are only used to explain the present invention, but not to limit the present invention.

[0047] refer to figure 1 , figure 1 It is a schematic structural diagram of the security testing equipment of the hardware operating environment involved in the solution of the embodiment of the present invention.

[0048] like figure 1 As shown, the safety testing device may include: a processor 1001 , such as a central processing unit (Central Processing Unit, CPU), a communication bus 1002 , a user interface 1003 , a network interface 1004 , and a memory 1005 . Among them, the communication bus 1002 is used to realize the connection and communication between these components. The user interface 1003 may include a display screen (Display), and the optional user interface 1003 may also include a standard wired interface and a wireless interface. The wired interface of the user interface 1003 may be a USB int...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a safety testing method, equipment, storage medium and device. The method extracts identification parameters from the request data to be tested by acquiring the request data to be tested; acquires a corresponding target script according to the identification parameters; Injecting the target script into the request data to be tested, generating test data, and sending the test data to a preset server; receiving a test result returned by the preset server, and judging the preset test result according to the test result Check if the server is vulnerable. Based on information security, the target script is injected into the request data to be tested to generate test data, and the test data is used to test whether there are loopholes in the preset server, bypassing the front-end verification, and the test results are visible in real time, improving test efficiency and effectiveness.

Description

technical field [0001] The present invention relates to the technical field of information security, in particular to a security testing method, equipment, storage medium and device. Background technique [0002] Cross-site scripting (Cross Site Scripting, XSS for short) is one of the ways to maliciously steal information from users by using website vulnerabilities. When users browse websites, use instant messaging software, or read e-mails, they usually click on the links in them. Malicious attackers insert malicious codes into the links, and when users click on these links, the web server that generates the corresponding web pages has XSS vulnerabilities because they do not filter these malicious codes, so a page containing malicious codes is generated. XSS is ubiquitous on current Internet sites, which poses a great threat to direct users. Database security risks caused by Structured Query Language Inject (SqlInject for short) attacks include: brushing, dragging, and cr...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): H04L9/40
CPCH04L63/1408H04L63/1433
Inventor 王铮
Owner CHINA PING AN PROPERTY INSURANCE CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products