会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 3. 发明申请
    • METHOD OF IDENTIFYING AND COUNTERACTING INTERNET ATTACKS
    • 识别和排除互联网攻击的方法
    • US20160142438A1
    • 2016-05-19
    • US14701115
    • 2015-04-30
    • Cleafy S.r.l.
    • Nicolò PastoreEmanuele ParrinelloCarmine Giangregorio
    • H04L29/06H04L29/08
    • H04L63/1466G06F21/554G06F2221/032G06F2221/2107H04L63/0281H04L63/0428H04L63/061H04L63/067H04L63/08H04L63/0876H04L63/1416H04L67/02
    • The present disclosure relates to a method of identifying and counteracting Internet attacks, of Man-in-the-Browser and/or Man-in-the-Middle and/or Bot attack types, comprising the steps of: generating a request by a Web browser, concerning a Web application residing in a Web server; sending the request by the Web browser to a box server, which is in signal communication with the Web server; receiving a server DOM code by the box server, which code has been automatically generated by the Web server according to the request; sending a service page code by the box server to the Web browser, in response to the request, the service page code comprising an obfuscated and polymorphic javascript code and/or HTML code; receiving and processing the javascript code and/or HTML code, by the Web browser, to automatically generate an asynchronous request, such that environment data of the Web server may be transmitted to the box server; processing the environment data by the box server, to identify Internet attacks; performing an encryption function on the server DOM code by the box server to generate an obfuscated DOM code, and sending the obfuscated DOM code to the Web browser in response to the asynchronous request; performing a decryption function on the obfuscated DOM code by the service page code, to obtain the server DOM code; rendering the server DOM code by the Web browser.
    • 本公开涉及一种识别和抵消网络浏览器和/或中间和/或僵尸攻击类型的因特网攻击的方法,包括以下步骤:通过网络生成请求 浏览器,涉及驻留在Web服务器中的Web应用程序; 将所述Web浏览器的请求发送到与所述Web服务器进行信号通信的盒服务器; 通过盒式服务器接收服务器DOM代码,根据请求,由Web服务器自动生成哪个代码; 响应于所述请求,由盒服务器将服务页面代码发送到Web浏览器,该服务页面代码包括混淆和多态的JavaScript代码和/或HTML代码; 通过Web浏览器接收和处理JavaScript代码和/或HTML代码以自动生成异步请求,使得Web服务器的环境数据可以被发送到盒式服务器; 通过盒式服务器处理环境数据,识别互联网攻击; 通过盒服务器对服务器DOM代码执行加密功能以产生模糊的DOM代码,并且响应于异步请求将混淆的DOM代码发送到Web浏览器; 通过服务页面代码对混淆的DOM代码执行解密功能,以获得服务器DOM代码; 通过Web浏览器呈现服务器DOM代码。