Patent · US Active

Active scanning tool for identifying customer misconfigurations of virtual machine instances

US11803766B1 · kind B1 · utility

29Cited by
1References
21Claims
0Family size

Assignee

Inventors

Key dates

Filing dateDec 12, 2019
Grant dateOct 31, 2023
Priority date
Expiry dateNov 3, 2041

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06F2009/45595
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

An automated security assessment service of a service provider network may identify, and notify a customer of, misconfigured VM instances that can be access (e.g., via the Internet). A scanner tool may call an automated reasoning service to identify any VM instances of a customer that can be accessed, and may receive information from the automated reasoning service that is usable to exchange packets with those identified instances. The scanner tool can use the information to send requests to the identified instances. After receiving responses from the identified instances, the scanner tool can store, in storage of a network-based storage service, and in association with a customer account of the customer, encrypted data about the results of the scan (e.g., any VM instances that are vulnerable to attackers), and this encrypted data is thereby accessible to the customer with proper decrypt permissions.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.