Ryan James Berg - Sudbury MA, US Larry Rose - Chelmsford MA, US John Peyton - Arlington MA, US John J. Danahy - Canton MA, US Robert Gottlieb - Westford MA, US Chris Rehbein - Watertown MA, US
Assignee:
Ounce Labs, Inc. - Waltham MA
International Classification:
G06F 9/44 G06F 12/14 G06F 21/00
US Classification:
717126, 717125, 726 25
Abstract:
A method and system of detecting vulnerabilities in source code. Source code is parsed into an intermediate representation. Models (e. g. , in the form of lattices) are derived for the variables in the code and for the variables and/or expressions used in conjunction with routine calls. The models are then analyzed in conjunction with pre-specified rules about the routines to determine if the routine call posses one or more of pre-selected vulnerabilities.
Method And System For Detecting Race Condition Vulnerabilities In Source Code
Ryan James Berg - Sudbury MA, US Larry Rose - Chelmsford MA, US John Peyton - Arlington MA, US John J. Danahy - Canton MA, US Robert Gottlieb - Westford MA, US Chris Rehbein - Watertown MA, US
Assignee:
Ounce Labs, Inc. - Waltham MA
International Classification:
G06F 9/44 G06F 12/14 G06F 21/00
US Classification:
717126, 717125, 726 25
Abstract:
A method and system of detecting vulnerabilities in source code. Source code is parsed into an intermediate representation. Models are derived for the code and the models are then analyzed in conjunction with pre-specified rules about the routines to determine if the routines posses one or more of pre-selected vulnerabilities.
Method And System For Detecting Vulnerabilities In Source Code
Ryan J. Berg - Sudbury MA, US Larry Rose - Chelmsford MA, US John Peyton - Arlington MA, US John J. Danahy - Canton MA, US Robert Gottlieb - Westford MA, US Chris Rehbein - Watertown MA, US
Assignee:
Ounce Labs, Inc. - Waltham MA
International Classification:
G06F 9/44 G06F 12/14 G06F 21/00
US Classification:
717126, 717125, 726 25
Abstract:
A method and system of detecting vulnerabilities in source code. Source code is parsed into an intermediate representation. Models (e. g. , in the form of lattices) are derived for the variables in the code and for the variables and/or expressions used in conjunction with routine calls. The models are then analyzed in conjunction with pre-specified rules about the routines to determine if the routine call posses one or more of pre-selected vulnerabilities.
Method And System For Detecting Privilege Escalation Vulnerabilities In Source Code
Ryan James Berg - Sudbury MA, US Larry Rose - Chelmsford MA, US John Peyton - Arlington MA, US John J. Danahy - Canton MA, US Robert Gottlieb - Westford MA, US Chris Rehbein - Watertown MA, US
Assignee:
Ounce Labs, Inc. - Waltham MA
International Classification:
G08B 23/00
US Classification:
726 25, 726 22, 726 23, 726 24, 717106, 717122
Abstract:
A method and system of detecting vulnerabilities in source code. Source code is parsed into an intermediate representation. Models are derived for the code and the models are then analyzed in conjunction with pre-specified rules about the routines to determine if the routine call posses one or more of pre-selected vulnerabilities.
Method And System For Detecting Vulnerabilities In Source Code
Ryan J. Berg - Sudbury MA, US Larry Rose - Chelmsford MA, US John Peyton - Arlington MA, US John J. Danahy - Canton MA, US Robert Gottlieb - Westford MA, US Chris Rehbein - Watertown MA, US
Assignee:
International Business Machines Corporation - Armonk NY
International Classification:
G06F 9/45
US Classification:
717152, 717143, 717153, 717154, 717155
Abstract:
A method and system of detecting vulnerabilities in source code. Source code is parsed into an intermediate representation. Models (e. g. , in the form of lattices) are derived for the variables in the code and for the variables and/or expressions used in conjunction with routine calls. The models are then analyzed in conjunction with pre-specified rules about the routines to determine if the routine call posses one or more of pre-selected vulnerabilities.
Director, Intelligence Systems, Federal Systems Division at Intelligent Software Solutions, Inc
Location:
Colorado Springs, Colorado
Industry:
Defense & Space
Work:
Intelligent Software Solutions, Inc since Feb 2006
Director, Intelligence Systems, Federal Systems Division
Premiere Global Services Aug 2000 - Aug 2005
Senior Software Engineer/Analyst
Mission Research Corporation (MRC) Dec 1997 - Aug 2000
Scientist/Engineer
TurboPower Software Nov 1996 - Nov 1997
Senior Software Developer
Mission Research Corporation Sep 1983 - Nov 1996
Scientist/Engineer
Education:
University of Illinois at Urbana-Champaign 1978 - 1983
BSEE, Audio Electronics
Certifications:
Project Management Professional (PMP), Project Management Institute
Deputy Sheriff'at St Louis County Sherrif's Department
Ft Worth, TexasPast: The Man who was responsible for everything at Larry Rose Associates, Instructor... I worked in the advertising industry from 1965 till the fall of 2008, My goal has always been to work with companies and individuals who use print media... I worked in the advertising industry from 1965 till the fall of 2008, My goal has always been to work with companies and individuals who use print media advertising to reduce costs and improve the quality of their marketing efforts.
I have experience in many different marketing areas. I have worked...