Patent · US Active

System and methods of identifying system vulnerabilities

US10277619B1 · kind B1 · utility

13Cited by
1References
12Claims
0Family size

Assignee

Inventors

Key dates

Filing dateApr 27, 2016
Grant dateApr 30, 2019
Priority date
Expiry dateSep 2, 2036

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06F21/577
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

The invention relates to detecting vulnerabilities in technology infrastructure environments. Data describing vulnerabilities detected in a technological environment of an enterprise is obtained. The vulnerability data is combined with data relating to servers, applications associated with the servers, and business functions associated with the applications, within the technological environment of the enterprise in order to create enriched data. The enriched data is enhanced using one or more of the following processes: deduplicating records in the enriched data; modifying of a severity assigned to vulnerabilities based on one or more enterprise-infrastructure factors; archiving and purging of records included in the enriched data; consolidating IP addresses associated with the vulnerabilities; excepting records in the enriched data for vulnerabilities undergoing active remediation; and validating the enriched data. After the enriched data is enhanced, it may be sorted in accordance with one or more filters. The sorted data may then be displayed for further analysis.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.