WEB weak password detection method combining static characteristics and dynamic page characteristics
The invention relates to a WEB weak password detection method combining static characteristics and dynamic page characteristics, and belongs to the field of information security. The method comprises the following steps: sending wrong passwords for at least two times to judge whether a dynamic retur...
Gespeichert in:
Hauptverfasser: | , , , , , , , |
---|---|
Format: | Patent |
Sprache: | chi ; eng |
Schlagworte: | |
Online-Zugang: | Volltext bestellen |
Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Zusammenfassung: | The invention relates to a WEB weak password detection method combining static characteristics and dynamic page characteristics, and belongs to the field of information security. The method comprises the following steps: sending wrong passwords for at least two times to judge whether a dynamic return value is generated and obtain EL; when the keywords of the blacklist exist in the return page, indicating that the password is wrong; if not, entering the next step of judgment; judging whether the key names of the user name and the password exist in the skipped page or not, and if so, indicating that the group of passwords is wrong, continuing the next judgment; if not, carrying out the next step of judgment; comparing the total length of the returned page with EL, if the total length of the returned page is equal to EL, considering the group of passwords as wrong passwords, otherwise, entering the next step of judgment; and sequentially sending a wrong password e1 and the password s to be detected obtained from |
---|