Source code static analysis processing method and device

The invention provides a source code static analysis processing method and device, and relates to the technical field of knowledge maps. The method comprises the following steps: acquiring a source code graph to be analyzed; the source code graph is source code information represented by a knowledge...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: CHEN WEI, GAO RANXIN, ZHANG YUE, SI GUANLIN, SUN YUE, LI MIN, SHI LEI, XU XIAOTIAN, DONG BIN, HAN ZHE, HOU CONG, CHEN LERAN, JING SEN
Format: Patent
Sprache:chi ; eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:The invention provides a source code static analysis processing method and device, and relates to the technical field of knowledge maps. The method comprises the following steps: acquiring a source code graph to be analyzed; the source code graph is source code information represented by a knowledge graph; searching whether a knowledge graph sub-graph matched with the source code graph exists in a knowledge graph storage database or not, and determining a source code static analysis result of a source code corresponding to the source code graph according to a search result; wherein the knowledge graph subgraph reflects the mapping relation between the source code information and the vulnerability related information. The device executes the method. According to the source code static analysis processing method and device provided by the embodiment of the invention, a feasible'search 'path can be provided for source code static analysis, so that the detection efficiency of source code auditing is improved. 本发明