Bank of America Corporation
SYSTEM AND METHOD FOR IDENTIFYING INSIDER THREATS IN SOURCE CODE
Last updated:
Abstract:
A system configured for identifying insider threats in source code conducts an automated analysis designed to identify instances of insider threats. The system performs a static analysis on results from the automated analysis to identify instances of keywords related to methods and targets of insider threats, external data being used, code layering is used to obfuscate a content. The system identifies points of correlations between instances found by performing the static analysis and assigns weight values to code portions based on the number of points of correlations found in the code portions. The system identifies code portions having wight values above a threshold value, thereby detecting instances of insider threats in source code
Utility
7 Oct 2020
7 Apr 2022