Patent · US Active

System and method for providing automated computer security compromise as a service

US9183397B2 · kind B2 · utility

34Cited by
0References
17Claims
0Family size

Assignee

Inventors

Key dates

Filing dateJun 5, 2012
Grant dateNov 10, 2015
Priority date
Expiry dateJun 5, 2032

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L67/025
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A system for providing automated computer security compromise as a service, contains a web server having a web front end running on the web server. The Web server has stored therein pentest definitions. A command and control component processes the pentest definitions, builds pentest task tickets and reporting task tickets, and monitors at least one penetration tester component and/or at least one report generator component. The command and control component interacts with a cloud computing environment to scale up or down the number of penetration tester components and the number of report generator components, and assigns task tickets to the penetration tester and report generator components. At least one penetration tester component runs penetration testing modules available inside the penetration testing framework as instructed by the pentest task tickets. At least one reporter generator component generates reports based on the reporting tasks tickets generated by the command and control service.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.