JP2004102479A5 - - Google Patents

Download PDF

Info

Publication number
JP2004102479A5
JP2004102479A5 JP2002261039A JP2002261039A JP2004102479A5 JP 2004102479 A5 JP2004102479 A5 JP 2004102479A5 JP 2002261039 A JP2002261039 A JP 2002261039A JP 2002261039 A JP2002261039 A JP 2002261039A JP 2004102479 A5 JP2004102479 A5 JP 2004102479A5
Authority
JP
Japan
Prior art keywords
vulnerability inspection
vulnerability
inspection information
information
user system
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
JP2002261039A
Other languages
Japanese (ja)
Other versions
JP2004102479A (en
Filing date
Publication date
Application filed filed Critical
Priority to JP2002261039A priority Critical patent/JP2004102479A/en
Priority claimed from JP2002261039A external-priority patent/JP2004102479A/en
Publication of JP2004102479A publication Critical patent/JP2004102479A/en
Publication of JP2004102479A5 publication Critical patent/JP2004102479A5/ja
Pending legal-status Critical Current

Links

Claims (4)

ユーザシステムにインストールされている脆弱性検査ツールに対してネットワークを介して脆弱性検査情報を提供する脆弱性検査情報提供システムであって、
多種類ある脆弱性検査ツールの脆弱性検査情報項目の情報をすべて包含する脆弱性検査情報を格納したデータベースと、
前記ユーザシステムから所定の情報が送信されたとき、当該ユーザシステムに現在反映されていない脆弱性検査情報を、前記データベースから読出す手段と、
読出した脆弱性検査情報を、前記ユーザシステムの脆弱性検査ツールの種類に応じた形式に変換する手段と、
変換後の脆弱性検査情報を、新たに追加すべき脆弱性検査情報として前記ユーザシステムに送信する手段と
を備えたことを特徴とする脆弱性検査情報提供システム。
A vulnerability inspection information providing system for providing vulnerability inspection information via a network to a vulnerability inspection tool installed in a user system,
A database that stores vulnerability inspection information that includes all the information of vulnerability inspection information items of various types of vulnerability inspection tools;
Means for reading from the database vulnerability inspection information that is not currently reflected in the user system when predetermined information is transmitted from the user system;
Means for converting the read vulnerability inspection information into a format corresponding to the type of vulnerability inspection tool of the user system;
A vulnerability inspection information providing system comprising: means for transmitting the vulnerability inspection information after conversion to the user system as vulnerability inspection information to be newly added.
ユーザシステムにインストールされている脆弱性検査ツールに対してネットワークを介して脆弱性検査情報を提供する脆弱性検査情報提供システムであって、
多種類ある脆弱性検査ツールの脆弱性検査情報項目の情報をすべて包含する脆弱性検査情報を、その登録日時とともに、格納したデータベースと、
前記ユーザシステムから、前回脆弱性情報を取得した日時を含む所定の情報が送信されたとき、前記データベースから、前回脆弱性情報を取得した日時以降に登録された脆弱性検査情報を読出す手段と、
読出した脆弱性検査情報を、前記ユーザシステムの脆弱性検査ツールの種類に応じた形式に変換する手段と、
変換後の脆弱性検査情報を、新たに追加すべき脆弱性検査情報として前記ユーザシステムに送信する手段と
を備えたことを特徴とする脆弱性検査情報提供システム。
A vulnerability inspection information providing system for providing vulnerability inspection information via a network to a vulnerability inspection tool installed in a user system,
A database that stores vulnerability inspection information including all the information of vulnerability inspection information items of various types of vulnerability inspection tools, along with their registration date and time,
Means for reading out vulnerability inspection information registered after the date and time when the previous vulnerability information was acquired from the database when predetermined information including the date and time when the previous vulnerability information was acquired is transmitted from the user system; ,
Means for converting the read vulnerability inspection information into a format corresponding to the type of vulnerability inspection tool of the user system;
A vulnerability inspection information providing system comprising: means for transmitting the vulnerability inspection information after conversion to the user system as vulnerability inspection information to be newly added.
脆弱性検査ツールがインストールされているユーザシステムと、該脆弱性検査ツールに対して脆弱性検査情報を配布する脆弱性検査情報提供データベースとをネットワークに接続した脆弱性検査情報配布システムであって、
前記ユーザシステムは、
一定の時間間隔で、前記脆弱性検査情報提供データベースに対して、所定の情報を送信する手段と、
前記脆弱性検査情報提供データベースから脆弱性検査情報が送信されてきたとき、その脆弱性検査情報を、前記脆弱性検査ツールが保持する脆弱性検査情報に追加設定する手段と
を備え、
前記脆弱性検査情報提供データベースは、
多種類ある脆弱性検査ツールの脆弱性検査情報項目の情報をすべて包含する脆弱性検査情報を格納したデータベースと、
前記ユーザシステムから前記所定の情報が送信されてきたとき、当該ユーザシステムに現在反映されていない脆弱性検査情報を、前記データベースから読出す手段と、
読出した脆弱性検査情報を、前記ユーザシステムの脆弱性検査ツールの種類に応じた形式に変換する手段と、
変換後の脆弱性検査情報を、新たに追加すべき脆弱性検査情報として前記ユーザシステムに送信する手段と
を備えたことを特徴とする脆弱性検査情報配布システム。
A vulnerability inspection information distribution system in which a user system in which a vulnerability inspection tool is installed and a vulnerability inspection information providing database for distributing vulnerability inspection information to the vulnerability inspection tool are connected to a network,
The user system is:
Means for transmitting predetermined information to the vulnerability check information providing database at regular time intervals;
Means for additionally setting the vulnerability inspection information to the vulnerability inspection information held by the vulnerability inspection tool when vulnerability inspection information is transmitted from the vulnerability inspection information providing database;
The vulnerability inspection information providing database is:
A database that stores vulnerability inspection information that includes all the information of vulnerability inspection information items of various types of vulnerability inspection tools;
Means for reading from the database vulnerability inspection information not currently reflected in the user system when the predetermined information is transmitted from the user system;
Means for converting the read vulnerability inspection information into a format corresponding to the type of vulnerability inspection tool of the user system;
A vulnerability inspection information distribution system comprising: means for transmitting the converted vulnerability inspection information to the user system as vulnerability inspection information to be newly added.
ユーザシステムにインストールされている脆弱性検査ツールに対してネットワークを介して脆弱性検査情報提供システムから脆弱性検査情報を提供する脆弱性検査情報提供方法であって、
ユーザシステムの情報取得条件作成手段が、一定の時間間隔で、脆弱性検査情報提供データベースに対して所定の情報を送信するステップと、
脆弱性検査情報提供データベースにて前記所定の情報を受信したとき、脆弱性検査情報提供システムの脆弱性情報読出し手段が、当該ユーザシステムに現在反映されていない脆弱性検査情報を、多種類ある脆弱性検査ツールの脆弱性検査情報項目の情報をすべて包含する脆弱性検査情報を格納したデータベースから、読出すステップと、
脆弱性検査情報提供システムのデータ変換手段が、読出した脆弱性検査情報を、前記ユーザシステムの脆弱性検査ツールの種類に応じた形式に変換するステップと、
前記データ変換手段が、変換後の脆弱性検査情報を、新たに追加すべき脆弱性検査情報として前記ユーザシステムに送信するステップと、
前記データ変換手段から脆弱性検査情報が送信されてきたとき、ユーザシステムの脆弱性検査項目追加手段が、その脆弱性検査情報を、前記脆弱性検査ツールが保持する脆弱性検査情報に追加設定するステップと
を備えたことを特徴とする脆弱性検査情報提供方法。
A vulnerability inspection information providing method for providing vulnerability inspection information from a vulnerability inspection information providing system to a vulnerability inspection tool installed in a user system via a network,
The information acquisition condition creating means of the user system transmits predetermined information to the vulnerability check information providing database at regular time intervals;
When the predetermined information is received in the vulnerability inspection information providing database, the vulnerability information reading means of the vulnerability inspection information providing system has various types of vulnerability inspection information not currently reflected in the user system. Reading from a database storing vulnerability inspection information including all information of vulnerability inspection information items of the property inspection tool;
A step of converting the read vulnerability inspection information into a format according to the type of the vulnerability inspection tool of the user system , the data conversion means of the vulnerability inspection information providing system ;
The data conversion means transmitting the converted vulnerability inspection information to the user system as vulnerability inspection information to be newly added;
When vulnerability inspection information is transmitted from the data conversion means , the vulnerability inspection item addition means of the user system additionally sets the vulnerability inspection information to the vulnerability inspection information held by the vulnerability inspection tool. A vulnerability inspection information providing method characterized by comprising the steps:
JP2002261039A 2002-09-06 2002-09-06 Fragility test inspection providing system and fragility test information providing method Pending JP2004102479A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
JP2002261039A JP2004102479A (en) 2002-09-06 2002-09-06 Fragility test inspection providing system and fragility test information providing method

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
JP2002261039A JP2004102479A (en) 2002-09-06 2002-09-06 Fragility test inspection providing system and fragility test information providing method

Publications (2)

Publication Number Publication Date
JP2004102479A JP2004102479A (en) 2004-04-02
JP2004102479A5 true JP2004102479A5 (en) 2005-07-28

Family

ID=32261519

Family Applications (1)

Application Number Title Priority Date Filing Date
JP2002261039A Pending JP2004102479A (en) 2002-09-06 2002-09-06 Fragility test inspection providing system and fragility test information providing method

Country Status (1)

Country Link
JP (1) JP2004102479A (en)

Families Citing this family (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US8458793B2 (en) 2004-07-13 2013-06-04 International Business Machines Corporation Methods, computer program products and data structures for intrusion detection, intrusion response and vulnerability remediation across target computer systems
EP1630710B1 (en) * 2004-07-21 2019-11-06 Microsoft Technology Licensing, LLC Containment of worms
KR100877066B1 (en) * 2007-01-22 2009-01-09 삼성전자주식회사 Apparatus for GUI widget using layout structure and method thereof
JP5243111B2 (en) * 2008-06-13 2013-07-24 Necシステムテクノロジー株式会社 Vulnerability countermeasure system, vulnerability countermeasure server, vulnerability countermeasure method, and program
CN102075347B (en) * 2010-11-18 2013-11-20 北京神州绿盟信息安全科技股份有限公司 Security configuration checking equipment and method, and network system adopting equipment
JP6911967B2 (en) * 2016-03-25 2021-07-28 日本電気株式会社 Security risk management system, terminal, server, control method, program
CN111090470A (en) * 2019-10-15 2020-05-01 平安科技(深圳)有限公司 Secure starting method and device of cloud host, computer equipment and storage medium
JP7215525B2 (en) 2020-04-08 2023-01-31 日本電気株式会社 Terminal, control method and program

Similar Documents

Publication Publication Date Title
WO2004051555A3 (en) Method and apparatus for improved information transactions
WO2001069429A3 (en) Controlled remote product internet access and distribution
EP1168219A3 (en) Client information collecting method, client information providing method, point assigning method, merchandise information providing method, and merchandise information collection apparatus using network
WO2007076352A3 (en) System and method for accessing and managing mobile device metadata
DE602004021097D1 (en) DEVICE FOR STRING CODING OF A CARD SUITABLE FOR MULTIPLE USE
WO2006107481A3 (en) System and method for utilizing a presence service to facilitate access to a service or application over a network
MX2009009925A (en) Method for tracking credit card fraud.
WO2004114090A3 (en) Home shopping system
EP2060980A3 (en) Server and client device, and information processing system and method
WO2007064896A3 (en) Data exchange system and method
WO2004048911A3 (en) System and method for tracking environmental emission reductions
EP2078285A4 (en) Process and system for the automated collection of business information directly from a business entity's accounting system
GB201113819D0 (en) Network barcode verification system
WO2008069834A3 (en) System, method, and software for a business acquisition management solution
WO2004074954A3 (en) Apparatus and method for open network-based data acquisition using xml
WO2005084265A3 (en) System and method for registration of valuable items
JP2006153870A5 (en)
WO2002001389A3 (en) Web-based collaborative data collection system
EP1126396A3 (en) Information providing system for providing information about suppliers
EP1286235A3 (en) Service-portal enabled automation control module (ACM)
WO2007047278A3 (en) Procurement information access via electronic mail
EP1720286A3 (en) Network management system and method
JP2004102479A5 (en)
CN102567330A (en) Heterogeneous database integration system
WO2004077215A3 (en) System and method for data migration and conversion