Verfahren und System zur Echtzeitdetektion und -Priorisierung von Computing-Assets, die von Öffentlich Bekannten Vulnerabilitäten Betroffen Sind, basierend auf Topologischen und Transaktionalen Überwachungsdaten
Anmelder: Dynatrace LLC 🇺🇸
Details
- Veröffentlichungs-Nr.
- EP3971751
- Aktenzeichen
- EP21197498
- Anmeldetag
- 17. September 2021
- Veröffentlichung
- 3. Juli 2024
- Erteilung
- 3. Juli 2024
- Rechtsraum
- EP
- IPC
- G06F21/57
Abstract
A technology is disclosed to perform real-time and online identification and prioritization of vulnerabilities of components of software applications. Agents are deployed to components of monitored applications that monitor and report application topology, communication, code execution and code loading activity. Reported code loading and execution activity data is used to detect the loading and execution of vulnerable code, topology and communication data is used to create a topology model of the application containing communication paths, trust boundaries and location of sensitive data. The analysis of code loading and execution data reveals the extend to which vulnerable code is used by monitored application components. The topology data combined with code execution data reveals the extent to which components executing vulnerable code are exposed to untrusted entities and/or accessing sensitive data. Execution data of vulnerable code, exposure and access data of components executing the vulnerable code are used to calculate priority scores for identified vulnerabilities.
Anmelder
- Firma
- Dynatrace LLC
- Land
- 🇺🇸 USA
US-amerikanisches Softwareunternehmen, das eine Plattform für Anwendungsleistungsüberwachung, Observability und KI-gestützte IT-Analyse anbietet.
53 Patente in unserer Datenbank
Fachgebiete
Boehmert & Boehmert geht auf die Zulassung von Dr. Karl Boehmert 1931 in Berlin zurück. Mit Standorten in Deutschland, Alicante, Paris und Shanghai bietet die Kanzlei IP aus einer Hand und legt besonderen Wert auf persönliche Mandantenbetreuung statt Anonymität.