죄송합니다. 이 페이지의 콘텐츠는 선택하신 언어로 제공되지 않습니다.

주요 내용으로 건너뛰기

Taint analysis

Taint analysis

(also taint checking, data tainting)

Taint analysis definition

Taint analysis is a process to determine what impact user input can have on a system’s security. Malicious users can enter tainted data to cause problems to apps and operating systems at vulnerable points (known as sensitive sinks).

Real taint analysis examples

1989: the Perl programming language starts supporting taint checking in setuid scripts from version 3.0.

1996: Netscape implements taint checking for JavaScript in Netscape Navigator 3.