CN108848115A - A kind of method, apparatus of web site scan, equipment and computer readable storage medium - Google Patents

A kind of method, apparatus of web site scan, equipment and computer readable storage medium Download PDF

Info

Publication number
CN108848115A
CN108848115A CN201811021145.4A CN201811021145A CN108848115A CN 108848115 A CN108848115 A CN 108848115A CN 201811021145 A CN201811021145 A CN 201811021145A CN 108848115 A CN108848115 A CN 108848115A
Authority
CN
China
Prior art keywords
event
web site
site scan
task
creeping
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201811021145.4A
Other languages
Chinese (zh)
Other versions
CN108848115B (en
Inventor
陈高翔
范渊
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Hangzhou Dbappsecurity Technology Co Ltd
Original Assignee
Hangzhou Dbappsecurity Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Hangzhou Dbappsecurity Technology Co Ltd filed Critical Hangzhou Dbappsecurity Technology Co Ltd
Priority to CN201811021145.4A priority Critical patent/CN108848115B/en
Publication of CN108848115A publication Critical patent/CN108848115A/en
Application granted granted Critical
Publication of CN108848115B publication Critical patent/CN108848115B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/14Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
    • H04L63/1433Vulnerability analysis
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/14Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
    • H04L63/1408Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic by monitoring network traffic
    • H04L63/1425Traffic logging, e.g. anomaly detection
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/14Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
    • H04L63/1441Countermeasures against malicious traffic
    • H04L63/145Countermeasures against malicious traffic the attack involving the propagation of malware through the network, e.g. viruses, trojans or worms

Abstract

This application discloses a kind of methods of web site scan, including:The web site scan task of input is received, and generates the task events of the parameter information of record web site scan task;Execution web site scan task treats scans web sites and crawls to obtain crawling results, and generates the event of creeping of record stick-slip motion parameter information;Hole Detection is obtained to website progress Hole Detection according to crawling results as a result, and generating the detecting event for recording Hole Detection information;When receiving web site scan reproduction order, reappeared according to the simulation that task events, event of creeping and detecting event carry out web site scan process.The application can quickly move through reproduction process investigation evidence obtaining when customer rs site is abnormal, and technology investigation can also be helped to solve adverse effect caused by web site scan by reappearing process, may also help in research staff and check improvement vulnerability scanning ability.The application additionally provides device, equipment and the computer readable storage medium of a kind of web site scan simultaneously, has above-mentioned beneficial effect.

Description

A kind of method, apparatus of web site scan, equipment and computer readable storage medium
Technical field
This application involves web site scan field, in particular to a kind of method, apparatus of web site scan, equipment and computer can Read storage medium.
Background technique
Web site scan refers to using safety problem existing for web site scan tool discovery website, to carry out bulletin and repair in time It is multiple, it avoids losing.The problems such as it includes website vulnerability scanning, under attack to avoid webpage, and database leaks;Further include It distorts to what webpage carried out to using loophole, hang the scanning that situations such as wooden horse carries out.
It in the actual use scene of web site scan, is answered the practical online website of client With the detection scanning for carrying out loophole.And under this application environment, web site scan device is held as a vulnerability detection device Capable operation is often with certain risk and destructiveness.When the application of user is by influencing even to destroy, existing website Scanning means is often difficult to recall scanning process and provide ample evidence to exclude itself negative effect to client web site application, Also or it is to provide information client is helped to understand the influence that actually generates.
Therefore, how to recall web site scan process to be a technical problem that technical personnel in the field need to solve at present.
Summary of the invention
The purpose of the application is to provide the method, apparatus, equipment and computer readable storage medium of a kind of web site scan, uses In web site scan process can be recalled after web site scan.
In order to solve the above technical problems, the application provides a kind of method of web site scan, this method includes:
The web site scan task of input is received, and generates the task thing for recording the parameter information of the web site scan task Part;
It executes the web site scan task and treats scans web sites and crawl to obtain crawling results, and generate record and creep ginseng The event of creeping of number information;
Hole Detection is carried out to the website according to the crawling results and obtains Hole Detection as a result, and generating record loophole The detecting event of detection information;
When receiving web site scan reproduction order, according to the task events, event and the detection thing of creeping Part carries out the simulation reproduction of web site scan process.
Optionally, it executes the web site scan task and treats scans web sites and crawl to obtain crawling results, and generate note The event of creeping of stick-slip motion parameter information is recorded, including:
When finding the link of new web page, the new web page is crawled to obtain new crawling results, and it is new to generate record The event of newly creeping of stick-slip motion parameter information.
Optionally, it executes the web site scan task and treats scans web sites and crawl to obtain crawling results, and generate note The event of creeping of stick-slip motion parameter information is recorded, including:
When receive give out a contract for a project request when, request of giving out a contract for a project described in execution sends corresponding data packet, and generates record and give out a contract for a project letter The event of giving out a contract for a project of breath;
When receiving response bag, the packet receiving event of record packet receiving information is generated.
Optionally, when receiving web site scan reproduction order, according to the task events, the event and described of creeping Detecting event carries out the simulation reproduction of web site scan process, including:
When receiving web site scan reproduction order, is reappeared according to the web site scan and order determining and read thing to be read Part;Wherein, the event to be read includes the task events, the event of creeping, the detecting event, the event of giving out a contract for a project And the packet receiving event;
The event to be read is ranked up sequentially in time;
The simulation reproduction of web site scan process is carried out according to the event to be read after sequence.
The application also provides a kind of device of web site scan, which includes:
Reception and recording unit, web site scan task for receiving input, and generate and record the web site scan task Parameter information task events;
It creeps and recording unit, treating scans web sites for executing the web site scan task crawls to obtain knot of creeping Fruit, and generate the event of creeping of record stick-slip motion parameter information;
Detection and recording unit obtain Hole Detection for carrying out Hole Detection to the website according to the crawling results As a result, and generating the detecting event for recording Hole Detection information;
Simulation reproduction unit, for according to the task events, described creeping when receiving web site scan reproduction order Event and the detecting event carry out the simulation reproduction of web site scan process.
Optionally, described to creep and recording unit includes:
It newly creeps and records subelement, for crawling to obtain to the new web page new when finding the link of new web page Crawling results, and generate the event of newly creeping for recording new stick-slip motion parameter information.
Optionally, described to creep and recording unit includes:
Give out a contract for a project and record subelement, for when receive give out a contract for a project request when, request of giving out a contract for a project described in execution sends corresponding data Packet, and generate the event of giving out a contract for a project for recording information of giving out a contract for a project;
Packet receiving records subelement, for generating the packet receiving event of record packet receiving information when receiving response bag.
Optionally, the simulation reproduction unit includes:
Subelement is determined, for ordering according to web site scan reproduction true when receiving web site scan reproduction order Determine and reads event to be read;Wherein, the event to be read includes the task events, the event of creeping, the detection Event, event and the packet receiving event of giving out a contract for a project;
Sorting subunit, for being ranked up sequentially in time to the event to be read;
Simulation reproduction subelement, the simulation for carrying out web site scan process according to the event to be read after sequence are multiple It is existing.
The application also provides a kind of equipment of web site scan, which includes:
Memory, for storing computer program;
Processor realizes the step of the method for web site scan as described in any of the above-described when for executing the computer program Suddenly.
The application also provides a kind of computer readable storage medium, and calculating is stored on the computer readable storage medium Machine program is realized as described in any of the above-described when the computer program is executed by processor the step of the method for web site scan.
A kind of method of web site scan provided herein including receiving the web site scan task of input, and generates note Record the task events of the parameter information of web site scan task;It executes web site scan task and treats scans web sites and crawl and climbed Row is as a result, and generate the event of creeping for recording stick-slip motion parameter information;Hole Detection is carried out to website according to crawling results to be leaked Hole testing result, and generate the detecting event of record Hole Detection information;When receive web site scan reproduction order when, according to appoint Business event, event of creeping and detecting event carry out the simulation reproduction of web site scan process.
Technical solution provided herein, by generating task events, event of creeping and detecting event to web site scan The key node information of process is recorded so that when receive web site scan reproduction order when, can according to each event into The simulation of row web site scan process reappears, so that can quickly move through reproduction process when customer rs site is abnormal Investigation evidence obtaining can also help technology investigation to solve adverse effect caused by web site scan by reproduction process, can also help Assistant research fellow sends out human review and improves vulnerability scanning ability.The application additionally provides device, equipment and the meter of a kind of web site scan simultaneously Calculation machine readable storage medium storing program for executing has above-mentioned beneficial effect, and details are not described herein.
Detailed description of the invention
In order to illustrate the technical solutions in the embodiments of the present application or in the prior art more clearly, to embodiment or will show below There is attached drawing needed in technical description to be briefly described, it should be apparent that, the accompanying drawings in the following description is only this The embodiment of application for those of ordinary skill in the art without creative efforts, can also basis The attached drawing of offer obtains other attached drawings.
Fig. 1 is a kind of flow chart of the method for web site scan provided by the embodiment of the present application;
Fig. 2 is a kind of structure chart of the device of web site scan provided by the embodiment of the present application;
Fig. 3 is the structure chart of the device of another kind web site scan provided by the embodiment of the present application;
Fig. 4 is a kind of structure chart of the equipment of web site scan provided by the embodiment of the present application.
Specific embodiment
The core of the application is to provide the method, apparatus, equipment and computer readable storage medium of a kind of web site scan, uses In web site scan process can be recalled after web site scan.
To keep the purposes, technical schemes and advantages of the embodiment of the present application clearer, below in conjunction with the embodiment of the present application In attached drawing, the technical scheme in the embodiment of the application is clearly and completely described, it is clear that described embodiment is Some embodiments of the present application, instead of all the embodiments.Based on the embodiment in the application, those of ordinary skill in the art Every other embodiment obtained without making creative work, shall fall in the protection scope of this application.
Referring to FIG. 1, Fig. 1 is a kind of flow chart of the method for web site scan provided by the embodiment of the present application.
It specifically comprises the following steps:
S101:The web site scan task of input is received, and generates the task thing of the parameter information of record web site scan task Part;
Existing web site scan device generally can all have log record file for occurring in logging program implementation procedure Error message etc., however these information typically just are used to check the mistake of program itself and can not reappear tracking scanning process pair Client web site applies generated influence.This application provides a kind of methods of web site scan, for solving the problems, such as this;
When receiving the web site scan task of input, the task thing of the parameter information of record web site scan task is generated Part, task events here can be realized by the way that call back function is added, specifically, before web site scan task starts and can tie It is separately added into call back function generation task after beam and starts event and task End Event, the parameter letter of record web site scan task Breath, parameter information here can specifically include the unique identifier of task, event occur time, occur event type, Targeted sites, execution parameter of task of scanning etc..
S102:Execution web site scan task treats scans web sites and crawls to obtain crawling results, and generates record and creep The event of creeping of parameter information;
The event of creeping mentioned herein can also be realized by the way that call back function is added, specifically, can climb in web page interlinkage Row process is separately added into call back function before starting with after and generates the beginning event, End Event of creeping of creeping, and records ginseng of creeping Number information, stick-slip motion parameter information here can specifically include the identifier of affiliated task, the time that event of creeping occurs, creeps The type of event, the web page interlinkage creeped etc.;
It optionally,, can also be to new net when finding the link of new web page during treating scans web sites and crawling Page crawls to obtain new crawling results, and generates the event of newly creeping for recording new stick-slip motion parameter information;Here stick-slip motion parameter Information can specifically include affiliated task identifier, newly creep event generation time, type of newly creeping, discovery new web page chain The information such as connect;
Optionally, during treating scans web sites and crawling, when receive give out a contract for a project request when, can also be performed and give out a contract for a project Request sends corresponding data packet, and generates the event of giving out a contract for a project for recording information of giving out a contract for a project;When receiving response bag, generates record and receive The packet receiving event of package informatin;
Here information of giving out a contract for a project can specifically include the identifier of affiliated task, event of the giving out a contract for a project time occurred, thing of giving out a contract for a project Type, the task correlation of part are believed from the request packet label increased, the module for generating request of giving out a contract for a project, request packet particular content of sending etc. Breath;Here packet receiving information can specifically include the identifier of affiliated task, packet receiving event occur time, packet receiving event class Type, the packet label of the response bag received, response bag the information such as particular content.
S103:Hole Detection is carried out to website according to crawling results and obtains Hole Detection as a result, and generating record loophole inspection The detecting event of measurement information;
Detecting event mentioned herein can be realized by the way that call back function is added, specifically, can be in program to webpage chain It connects and executes being separately added into call back function generation detection beginning event before and after, detecting end thing for Hole Detection process Part, records Hole Detection information, which can specifically include the identifier of affiliated task, detecting event hair The loophole type of the raw type of time, detecting event, the web page interlinkage of detection, detection;
Optionally, when receiving output order, the output order can also be performed, which is exported; Further, Hole Detection result can also be exported to designated position, such as default mailbox, preset mobile phone mailbox, to use Family can as early as possible repair website according to Hole Detection result.
S104:When receiving web site scan reproduction order, net is carried out according to task events, event of creeping and detecting event The simulation for scanning process of standing reappears.
Optionally, when event and packet receiving event are given out a contract for a project in generation, when receiving web site scan reproduction order, according to task Event, event of creeping and detecting event carry out the simulation reproduction of web site scan process, are specifically as follows:
When receiving web site scan reproduction order, is reappeared according to web site scan and order determining and read event to be read; Wherein, event to be read includes task events, event of creeping, detecting event, event of giving out a contract for a project and packet receiving event;
Event to be read is ranked up sequentially in time;
The simulation reproduction of web site scan process is carried out according to the event to be read after sequence.
It further, can also include the event of newly creeping in the practice to be read when event is newly creeped in generation.
Based on the above-mentioned technical proposal, the method for a kind of web site scan provided herein, by generating task events, climbing It acts part and detecting event records the key node information of web site scan process, so that when receiving web site scan reproduction When order, the simulation that web site scan process can be carried out according to each event reappears, so that when customer rs site is abnormal When, it can be quickly move through reproduction process investigation evidence obtaining, technology investigation can also be helped to solve web site scan by reproduction process Generated adverse effect may also help in research staff and check improvement vulnerability scanning ability.
Referring to FIG. 2, Fig. 2 is a kind of structure chart of the device of web site scan provided by the embodiment of the present application.
The apparatus may include:
Reception and recording unit 100, web site scan task for receiving input, and generate record web site scan task The task events of parameter information;
It creeps and recording unit 200, treating scans web sites for executing web site scan task crawls to obtain knot of creeping Fruit, and generate the event of creeping of record stick-slip motion parameter information;
Detection and recording unit 300, for according to crawling results to website carry out Hole Detection obtain Hole Detection as a result, And generate the detecting event of record Hole Detection information;
Simulation reproduction unit 400, for when receive web site scan reproduction order when, according to task events, event of creeping And detecting event carries out the simulation reproduction of web site scan process.
Referring to FIG. 3, Fig. 3 is the structure chart of the device of another kind web site scan provided by the embodiment of the present application.
This is creeped and recording unit 200 may include:
It newly creeps and records subelement, for crawling to new web page and newly being creeped when finding the link of new web page As a result, and generating the event of newly creeping for recording new stick-slip motion parameter information.
This is creeped and recording unit 200 also may include:
Give out a contract for a project and record subelement, for when receive give out a contract for a project request when, execution request of giving out a contract for a project sends corresponding data packet, and Generate the event of giving out a contract for a project for recording information of giving out a contract for a project;
Packet receiving records subelement, for generating the packet receiving event of record packet receiving information when receiving response bag.
The simulation reappears unit 400:
Subelement is determined, for reappearing order according to web site scan and determining simultaneously when receiving web site scan reproduction order Read event to be read;
Sorting subunit, for being ranked up sequentially in time to event to be read;
Simulation reproduction subelement, the simulation for carrying out web site scan process according to the event to be read after sequence reappear.
Since the embodiment of device part is corresponded to each other with the embodiment of method part, the embodiment of device part is asked Referring to the description of the embodiment of method part, wouldn't repeat here.
Referring to FIG. 4, Fig. 4 is a kind of structure chart of website scanning device provided by the embodiment of the present application.
The equipment can generate bigger difference because configuration or performance are different, may include one or more processing Device (central processing units, CPU) 522 (for example, one or more processors) and memory 532, one (such as one or more mass memories of storage medium 530 of a or more than one storage application program 542 or data 544 Equipment).Wherein, memory 532 and storage medium 530 can be of short duration storage or persistent storage.It is stored in storage medium 530 Program may include one or more modules (diagram does not mark), and each module may include to a series of fingers in device Enable operation.Further, central processing unit 522 can be set to communicate with storage medium 530, in website scanning device 500 The upper series of instructions operation executed in storage medium 530.
Website scanning device 500 can also include one or more power supplys 525, one or more wired or nothings Wired network interface 550, one or more input/output interfaces 558, and/or, one or more operating systems 541, Such as Windows ServerTM, Mac OS XTM, UnixTM, LinuxTM, FreeBSDTM etc..
Step in the method for web site scan described in above-mentioned Fig. 1 is based on the knot shown in Fig. 4 by website scanning device Structure is realized.
It is apparent to those skilled in the art that for convenience and simplicity of description, the system of foregoing description, The specific work process of device and unit, can refer to corresponding processes in the foregoing method embodiment, and details are not described herein.
In several embodiments provided herein, it should be understood that disclosed device, device and method, it can be with It realizes by another way.For example, the apparatus embodiments described above are merely exemplary, for example, the division of unit, Only a kind of logical function partition, there may be another division manner in actual implementation, such as multiple units or components can be with In conjunction with or be desirably integrated into another system, or some features can be ignored or not executed.Another point, it is shown or discussed Mutual coupling, direct-coupling or communication connection can be through some interfaces, the INDIRECT COUPLING of device or unit or Communication connection can be electrical property, mechanical or other forms.
Unit may or may not be physically separated as illustrated by the separation member, shown as a unit Component may or may not be physical unit, it can and it is in one place, or may be distributed over multiple networks On unit.It can some or all of the units may be selected to achieve the purpose of the solution of this embodiment according to the actual needs.
It, can also be in addition, each functional unit in each embodiment of the application can integrate in one processing unit It is that each unit physically exists alone, can also be integrated in one unit with two or more units.Above-mentioned integrated list Member both can take the form of hardware realization, can also realize in the form of software functional units.
It, can if integrated unit is realized in the form of SFU software functional unit and when sold or used as an independent product To be stored in a computer readable storage medium.Based on this understanding, the technical solution of the application substantially or Say that all or part of the part that contributes to existing technology or the technical solution can embody in the form of software products Out, which is stored in a storage medium, including some instructions are used so that a computer equipment The whole of (can be personal computer, funcall device or the network equipment etc.) execution each embodiment method of the application Or part steps.And storage medium above-mentioned includes:USB flash disk, mobile hard disk, read-only memory (Read-Only Memory, ROM), random access memory (Random Access Memory, RAM), magnetic or disk etc. are various can store program The medium of code.
Above to method, apparatus, equipment and the computer readable storage medium of a kind of web site scan provided herein It is described in detail.Specific examples are used herein to illustrate the principle and implementation manner of the present application, the above reality The explanation for applying example is merely used to help understand the present processes and its core concept.It should be pointed out that for the art For those of ordinary skill, under the premise of not departing from the application principle, can also to the application, some improvement and modification can also be carried out, These improvement and modification are also fallen into the protection scope of the claim of this application.
It should also be noted that, in the present specification, relational terms such as first and second and the like be used merely to by One entity or operation are distinguished with another entity or operation, without necessarily requiring or implying these entities or operation Between there are any actual relationship or orders.Moreover, the terms "include", "comprise" or its any other variant meaning Covering non-exclusive inclusion, so that the process, method, article or equipment for including a series of elements not only includes that A little elements, but also including other elements that are not explicitly listed, or further include for this process, method, article or The intrinsic element of equipment.In the absence of more restrictions, the element limited by sentence "including a ...", is not arranged Except there is also other identical elements in the process, method, article or equipment for including element.

Claims (10)

1. a kind of method of web site scan, which is characterized in that including:
The web site scan task of input is received, and generates the task events for recording the parameter information of the web site scan task;
It executes the web site scan task and treats scans web sites and crawl to obtain crawling results, and generate record stick-slip motion parameter letter The event of creeping of breath;
Hole Detection is carried out to the website according to the crawling results and obtains Hole Detection as a result, and generating record Hole Detection The detecting event of information;
When receiving web site scan reproduction order, according to the task events, it is described creep event and the detecting event into The simulation of row web site scan process reappears.
2. the method according to claim 1, wherein executing the web site scan task treats scans web sites progress It creeps to obtain crawling results, and generates the event of creeping of record stick-slip motion parameter information, including:
When finding the link of new web page, the new web page is crawled to obtain new crawling results, and generates record and newly creep The event of newly creeping of parameter information.
3. the method according to claim 1, wherein executing the web site scan task treats scans web sites progress It creeps to obtain crawling results, and generates the event of creeping of record stick-slip motion parameter information, including:
When receive give out a contract for a project request when, request of giving out a contract for a project described in execution sends corresponding data packet, and generates record and give out a contract for a project information Give out a contract for a project event;
When receiving response bag, the packet receiving event of record packet receiving information is generated.
4. according to the method described in claim 3, it is characterized in that, when receive web site scan reproduction order when, according to described The simulation reproduction of task events, the creep event and detecting event progress web site scan process, including:
When receiving web site scan reproduction order, is reappeared according to the web site scan and order determining and read event to be read; Wherein, the event to be read include the task events, the event of creeping, the detecting event, it is described give out a contract for a project event and The packet receiving event;
The event to be read is ranked up sequentially in time;
The simulation reproduction of web site scan process is carried out according to the event to be read after sequence.
5. a kind of device of web site scan, which is characterized in that including:
Reception and recording unit, web site scan task for receiving input, and generate the ginseng for recording the web site scan task The task events of number information;
It creeps and recording unit, treating scans web sites for executing the web site scan task crawls to obtain crawling results, And generate the event of creeping of record stick-slip motion parameter information;
Detection and recording unit obtain Hole Detection knot for carrying out Hole Detection to the website according to the crawling results Fruit, and generate the detecting event of record Hole Detection information;
Simulation reproduction unit, for when receive web site scan reproduction order when, according to the task events, the event of creeping And the detecting event carries out the simulation reproduction of web site scan process.
6. device according to claim 5, which is characterized in that described to creep and recording unit includes:
It newly creeps and records subelement, for crawling to the new web page and newly being creeped when finding the link of new web page As a result, and generating the event of newly creeping for recording new stick-slip motion parameter information.
7. device according to claim 5, which is characterized in that described to creep and recording unit includes:
Give out a contract for a project and record subelement, for when receive give out a contract for a project request when, request of giving out a contract for a project described in execution sends corresponding data packet, and Generate the event of giving out a contract for a project for recording information of giving out a contract for a project;
Packet receiving records subelement, for generating the packet receiving event of record packet receiving information when receiving response bag.
8. device according to claim 5, which is characterized in that the simulation reappears unit and includes:
Subelement is determined, for reappearing order according to the web site scan and determining simultaneously when receiving web site scan reproduction order Read event to be read;Wherein, the event to be read include the task events, the event of creeping, the detecting event, Event and the packet receiving event of giving out a contract for a project;
Sorting subunit, for being ranked up sequentially in time to the event to be read;
Simulation reproduction subelement, the simulation for carrying out web site scan process according to the event to be read after sequence reappear.
9. a kind of equipment of web site scan, which is characterized in that including:
Memory, for storing computer program;
Processor realizes the method for the web site scan as described in any one of Claims 1-4 when for executing the computer program The step of.
10. a kind of computer readable storage medium, which is characterized in that be stored with computer on the computer readable storage medium Program, realizing the method for web site scan as described in any one of Claims 1-4 when the computer program is executed by processor Step.
CN201811021145.4A 2018-09-03 2018-09-03 Website scanning method, device, equipment and computer readable storage medium Active CN108848115B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201811021145.4A CN108848115B (en) 2018-09-03 2018-09-03 Website scanning method, device, equipment and computer readable storage medium

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201811021145.4A CN108848115B (en) 2018-09-03 2018-09-03 Website scanning method, device, equipment and computer readable storage medium

Publications (2)

Publication Number Publication Date
CN108848115A true CN108848115A (en) 2018-11-20
CN108848115B CN108848115B (en) 2021-03-16

Family

ID=64189544

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201811021145.4A Active CN108848115B (en) 2018-09-03 2018-09-03 Website scanning method, device, equipment and computer readable storage medium

Country Status (1)

Country Link
CN (1) CN108848115B (en)

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US11210404B2 (en) 2019-06-14 2021-12-28 Netiq Corporation Blockchain-based state verifications of software component vulnerability database for software products
US11372980B2 (en) 2019-06-14 2022-06-28 Netiq Corporation Blockchains for software component vulnerability databases

Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102955914A (en) * 2011-08-19 2013-03-06 百度在线网络技术(北京)有限公司 Method and device for detecting security flaws of source files
CN103942497A (en) * 2013-09-11 2014-07-23 杭州安恒信息技术有限公司 Forensics type website vulnerability scanning method and system
CN104065645A (en) * 2014-05-28 2014-09-24 北京知道创宇信息技术有限公司 Web vulnerability protection method and apparatus
CN104363251A (en) * 2014-12-12 2015-02-18 北京奇虎科技有限公司 Website security detecting method and device
CN108063759A (en) * 2017-12-05 2018-05-22 西安交大捷普网络科技有限公司 Web vulnerability scanning methods
CN109302423A (en) * 2018-11-23 2019-02-01 杭州迪普科技股份有限公司 A kind of vulnerability scanning aptitude tests method and apparatus

Patent Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102955914A (en) * 2011-08-19 2013-03-06 百度在线网络技术(北京)有限公司 Method and device for detecting security flaws of source files
CN103942497A (en) * 2013-09-11 2014-07-23 杭州安恒信息技术有限公司 Forensics type website vulnerability scanning method and system
CN104065645A (en) * 2014-05-28 2014-09-24 北京知道创宇信息技术有限公司 Web vulnerability protection method and apparatus
CN104363251A (en) * 2014-12-12 2015-02-18 北京奇虎科技有限公司 Website security detecting method and device
CN108063759A (en) * 2017-12-05 2018-05-22 西安交大捷普网络科技有限公司 Web vulnerability scanning methods
CN109302423A (en) * 2018-11-23 2019-02-01 杭州迪普科技股份有限公司 A kind of vulnerability scanning aptitude tests method and apparatus

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
张楠: "Web应用安全漏洞扫描技术研究", 《万方优秀硕士学位论文库》 *

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US11210404B2 (en) 2019-06-14 2021-12-28 Netiq Corporation Blockchain-based state verifications of software component vulnerability database for software products
US11372980B2 (en) 2019-06-14 2022-06-28 Netiq Corporation Blockchains for software component vulnerability databases

Also Published As

Publication number Publication date
CN108848115B (en) 2021-03-16

Similar Documents

Publication Publication Date Title
US9146787B2 (en) Analytics for application programming interfaces
CN104348822B (en) A kind of method, apparatus and server of internet account number authentication
JP2019070912A (en) Security evaluation system and method for the same
US20120047581A1 (en) Event-driven auto-restoration of websites
US20050021736A1 (en) Method and system for monitoring performance of distributed applications
US20040078695A1 (en) Capturing system error messages
CN107657177A (en) A kind of leak detection method and device
US7159146B2 (en) Analyzing system error messages
CN111949803A (en) Method, device and equipment for detecting network abnormal user based on knowledge graph
CN104579830B (en) service monitoring method and device
CN113259392B (en) Network security attack and defense method, device and storage medium
KR101443071B1 (en) Error Check System of Webpage
CN107992738A (en) A kind of account logs in method for detecting abnormality, device and electronic equipment
CN108848115A (en) A kind of method, apparatus of web site scan, equipment and computer readable storage medium
CN114615016A (en) Enterprise network security assessment method and device, mobile terminal and storage medium
CN110401580A (en) Webpage status monitoring method and relevant device based on heartbeat mechanism
CN105117340B (en) URL detection methods and device for iOS browser application quality evaluations
CN114036059A (en) Automatic penetration testing system and method for power grid system and computer equipment
CN110399723B (en) Vulnerability detection method and device, storage medium and electronic device
US9736215B1 (en) System and method for correlating end-user experience data and backend-performance data
CN109889410A (en) Test method, apparatus, agent equipment and the readable storage medium storing program for executing of business function
JP6294847B2 (en) Log management control system and log management control method
CN111224981B (en) Data processing method and device, electronic equipment and storage medium
CN110908910B (en) Block chain-based test monitoring method and device and readable storage medium
CN108259416A (en) Detect the method and relevant device of malicious web pages

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant