Static analysis based on abstract program representations

An application analysis platform enables automatic generation of abstract program representations (APRs) that are amenable to static analyses for finding security vulnerabilities. The APR is generated automatically, preferably from an existing build system or a source repository, and then encapsulat...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: Goldberg, Richard Myer, Turnham, Jeffrey Charles, Murphy, Matthew Francis, Sharma, Babita, Xiao, Hua, Mak, Andrew, Peyton, Jr., John Thomas
Format: Patent
Sprache:eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
container_end_page
container_issue
container_start_page
container_title
container_volume
creator Goldberg, Richard Myer
Turnham, Jeffrey Charles
Murphy, Matthew Francis
Sharma, Babita
Xiao, Hua
Mak, Andrew
Peyton, Jr., John Thomas
description An application analysis platform enables automatic generation of abstract program representations (APRs) that are amenable to static analyses for finding security vulnerabilities. The APR is generated automatically, preferably from an existing build system or a source repository, and then encapsulated into a binary archival format for consumption by a static analysis tool, which operates on-premises or in the cloud. The abstract program representation is a highly compact version of the actual source code it represents. The archival format obfuscates the source code that is subjected to the analysis, thus protecting it from being reverse-engineered when moved off-premises or otherwise shared with other users, teams and even organizations. Binary archive files generated separately from different source code components may be readily merged and analyzed together to provide more effective static data-flow analysis, even with respect to components that are built on different machines by different teams and at different times.
format Patent
fullrecord <record><control><sourceid>epo_EVB</sourceid><recordid>TN_cdi_epo_espacenet_US10482262B2</recordid><sourceformat>XML</sourceformat><sourcesystem>PC</sourcesystem><sourcerecordid>US10482262B2</sourcerecordid><originalsourceid>FETCH-epo_espacenet_US10482262B23</originalsourceid><addsrcrecordid>eNrjZLAMLkksyUxWSMxLzKkszixWSEosTk1RyM9TSEwqLilKTC5RKCjKTy9KzFUoSi0oSi1OzQNpyM8r5mFgTUvMKU7lhdLcDIpuriHOHrqpBfnxqcUFicmpeakl8aHBhgYmFkZGZkZORsbEqAEAejgvYA</addsrcrecordid><sourcetype>Open Access Repository</sourcetype><iscdi>true</iscdi><recordtype>patent</recordtype></control><display><type>patent</type><title>Static analysis based on abstract program representations</title><source>esp@cenet</source><creator>Goldberg, Richard Myer ; Turnham, Jeffrey Charles ; Murphy, Matthew Francis ; Sharma, Babita ; Xiao, Hua ; Mak, Andrew ; Peyton, Jr., John Thomas</creator><creatorcontrib>Goldberg, Richard Myer ; Turnham, Jeffrey Charles ; Murphy, Matthew Francis ; Sharma, Babita ; Xiao, Hua ; Mak, Andrew ; Peyton, Jr., John Thomas</creatorcontrib><description>An application analysis platform enables automatic generation of abstract program representations (APRs) that are amenable to static analyses for finding security vulnerabilities. The APR is generated automatically, preferably from an existing build system or a source repository, and then encapsulated into a binary archival format for consumption by a static analysis tool, which operates on-premises or in the cloud. The abstract program representation is a highly compact version of the actual source code it represents. The archival format obfuscates the source code that is subjected to the analysis, thus protecting it from being reverse-engineered when moved off-premises or otherwise shared with other users, teams and even organizations. Binary archive files generated separately from different source code components may be readily merged and analyzed together to provide more effective static data-flow analysis, even with respect to components that are built on different machines by different teams and at different times.</description><language>eng</language><subject>ALARM SYSTEMS ; CALCULATING ; COMPUTING ; COUNTING ; ELECTRIC DIGITAL DATA PROCESSING ; ORDER TELEGRAPHS ; PHYSICS ; SIGNALLING ; SIGNALLING OR CALLING SYSTEMS</subject><creationdate>2019</creationdate><oa>free_for_read</oa><woscitedreferencessubscribed>false</woscitedreferencessubscribed></display><links><openurl>$$Topenurl_article</openurl><openurlfulltext>$$Topenurlfull_article</openurlfulltext><thumbnail>$$Tsyndetics_thumb_exl</thumbnail><linktohtml>$$Uhttps://worldwide.espacenet.com/publicationDetails/biblio?FT=D&amp;date=20191119&amp;DB=EPODOC&amp;CC=US&amp;NR=10482262B2$$EHTML$$P50$$Gepo$$Hfree_for_read</linktohtml><link.rule.ids>230,308,776,881,25542,76516</link.rule.ids><linktorsrc>$$Uhttps://worldwide.espacenet.com/publicationDetails/biblio?FT=D&amp;date=20191119&amp;DB=EPODOC&amp;CC=US&amp;NR=10482262B2$$EView_record_in_European_Patent_Office$$FView_record_in_$$GEuropean_Patent_Office$$Hfree_for_read</linktorsrc></links><search><creatorcontrib>Goldberg, Richard Myer</creatorcontrib><creatorcontrib>Turnham, Jeffrey Charles</creatorcontrib><creatorcontrib>Murphy, Matthew Francis</creatorcontrib><creatorcontrib>Sharma, Babita</creatorcontrib><creatorcontrib>Xiao, Hua</creatorcontrib><creatorcontrib>Mak, Andrew</creatorcontrib><creatorcontrib>Peyton, Jr., John Thomas</creatorcontrib><title>Static analysis based on abstract program representations</title><description>An application analysis platform enables automatic generation of abstract program representations (APRs) that are amenable to static analyses for finding security vulnerabilities. The APR is generated automatically, preferably from an existing build system or a source repository, and then encapsulated into a binary archival format for consumption by a static analysis tool, which operates on-premises or in the cloud. The abstract program representation is a highly compact version of the actual source code it represents. The archival format obfuscates the source code that is subjected to the analysis, thus protecting it from being reverse-engineered when moved off-premises or otherwise shared with other users, teams and even organizations. Binary archive files generated separately from different source code components may be readily merged and analyzed together to provide more effective static data-flow analysis, even with respect to components that are built on different machines by different teams and at different times.</description><subject>ALARM SYSTEMS</subject><subject>CALCULATING</subject><subject>COMPUTING</subject><subject>COUNTING</subject><subject>ELECTRIC DIGITAL DATA PROCESSING</subject><subject>ORDER TELEGRAPHS</subject><subject>PHYSICS</subject><subject>SIGNALLING</subject><subject>SIGNALLING OR CALLING SYSTEMS</subject><fulltext>true</fulltext><rsrctype>patent</rsrctype><creationdate>2019</creationdate><recordtype>patent</recordtype><sourceid>EVB</sourceid><recordid>eNrjZLAMLkksyUxWSMxLzKkszixWSEosTk1RyM9TSEwqLilKTC5RKCjKTy9KzFUoSi0oSi1OzQNpyM8r5mFgTUvMKU7lhdLcDIpuriHOHrqpBfnxqcUFicmpeakl8aHBhgYmFkZGZkZORsbEqAEAejgvYA</recordid><startdate>20191119</startdate><enddate>20191119</enddate><creator>Goldberg, Richard Myer</creator><creator>Turnham, Jeffrey Charles</creator><creator>Murphy, Matthew Francis</creator><creator>Sharma, Babita</creator><creator>Xiao, Hua</creator><creator>Mak, Andrew</creator><creator>Peyton, Jr., John Thomas</creator><scope>EVB</scope></search><sort><creationdate>20191119</creationdate><title>Static analysis based on abstract program representations</title><author>Goldberg, Richard Myer ; Turnham, Jeffrey Charles ; Murphy, Matthew Francis ; Sharma, Babita ; Xiao, Hua ; Mak, Andrew ; Peyton, Jr., John Thomas</author></sort><facets><frbrtype>5</frbrtype><frbrgroupid>cdi_FETCH-epo_espacenet_US10482262B23</frbrgroupid><rsrctype>patents</rsrctype><prefilter>patents</prefilter><language>eng</language><creationdate>2019</creationdate><topic>ALARM SYSTEMS</topic><topic>CALCULATING</topic><topic>COMPUTING</topic><topic>COUNTING</topic><topic>ELECTRIC DIGITAL DATA PROCESSING</topic><topic>ORDER TELEGRAPHS</topic><topic>PHYSICS</topic><topic>SIGNALLING</topic><topic>SIGNALLING OR CALLING SYSTEMS</topic><toplevel>online_resources</toplevel><creatorcontrib>Goldberg, Richard Myer</creatorcontrib><creatorcontrib>Turnham, Jeffrey Charles</creatorcontrib><creatorcontrib>Murphy, Matthew Francis</creatorcontrib><creatorcontrib>Sharma, Babita</creatorcontrib><creatorcontrib>Xiao, Hua</creatorcontrib><creatorcontrib>Mak, Andrew</creatorcontrib><creatorcontrib>Peyton, Jr., John Thomas</creatorcontrib><collection>esp@cenet</collection></facets><delivery><delcategory>Remote Search Resource</delcategory><fulltext>fulltext_linktorsrc</fulltext></delivery><addata><au>Goldberg, Richard Myer</au><au>Turnham, Jeffrey Charles</au><au>Murphy, Matthew Francis</au><au>Sharma, Babita</au><au>Xiao, Hua</au><au>Mak, Andrew</au><au>Peyton, Jr., John Thomas</au><format>patent</format><genre>patent</genre><ristype>GEN</ristype><title>Static analysis based on abstract program representations</title><date>2019-11-19</date><risdate>2019</risdate><abstract>An application analysis platform enables automatic generation of abstract program representations (APRs) that are amenable to static analyses for finding security vulnerabilities. The APR is generated automatically, preferably from an existing build system or a source repository, and then encapsulated into a binary archival format for consumption by a static analysis tool, which operates on-premises or in the cloud. The abstract program representation is a highly compact version of the actual source code it represents. The archival format obfuscates the source code that is subjected to the analysis, thus protecting it from being reverse-engineered when moved off-premises or otherwise shared with other users, teams and even organizations. Binary archive files generated separately from different source code components may be readily merged and analyzed together to provide more effective static data-flow analysis, even with respect to components that are built on different machines by different teams and at different times.</abstract><oa>free_for_read</oa></addata></record>
fulltext fulltext_linktorsrc
identifier
ispartof
issn
language eng
recordid cdi_epo_espacenet_US10482262B2
source esp@cenet
subjects ALARM SYSTEMS
CALCULATING
COMPUTING
COUNTING
ELECTRIC DIGITAL DATA PROCESSING
ORDER TELEGRAPHS
PHYSICS
SIGNALLING
SIGNALLING OR CALLING SYSTEMS
title Static analysis based on abstract program representations
url https://sfx.bib-bvb.de/sfx_tum?ctx_ver=Z39.88-2004&ctx_enc=info:ofi/enc:UTF-8&ctx_tim=2025-02-15T00%3A05%3A10IST&url_ver=Z39.88-2004&url_ctx_fmt=infofi/fmt:kev:mtx:ctx&rfr_id=info:sid/primo.exlibrisgroup.com:primo3-Article-epo_EVB&rft_val_fmt=info:ofi/fmt:kev:mtx:patent&rft.genre=patent&rft.au=Goldberg,%20Richard%20Myer&rft.date=2019-11-19&rft_id=info:doi/&rft_dat=%3Cepo_EVB%3EUS10482262B2%3C/epo_EVB%3E%3Curl%3E%3C/url%3E&disable_directlink=true&sfx.directlink=off&sfx.report_link=0&rft_id=info:oai/&rft_id=info:pmid/&rfr_iscdi=true