Detecting a potential security leak by a microservice

Embodiments described herein are generally directed to testing a microservice to determine whether the microservice leaks sensitive information. According to an example, prior to deployment of a microservice within a production environment, a test suite for the microservice is generated based at lea...

Full description

Saved in:
Bibliographic Details
Main Authors Murthy, Prabhu, Bajaj, Ajay Kumar, Ranjan, Jyoti
Format Patent
LanguageEnglish
Published 05.09.2023
Subjects
Online AccessGet full text

Cover

Loading…
More Information
Summary:Embodiments described herein are generally directed to testing a microservice to determine whether the microservice leaks sensitive information. According to an example, prior to deployment of a microservice within a production environment, a test suite for the microservice is generated based at least in part on a specification of an application programming interface (API) of the microservice defining operations supported by the API and information regarding parameters of each of the operations. The microservice is subjected to the test suite. A potential security leak by the microservice is then detected by analyzing a dataset to which the microservice outputs information, including applying security rules to the dataset.
Bibliography:Application Number: US202016856702