Invention Grant
- Patent Title: System and method for monitoring effective control of a machine
-
Application No.: US15898359Application Date: 2018-02-16
-
Publication No.: US10977364B2Publication Date: 2021-04-13
- Inventor: Andrew F. Harris
- Applicant: Microsoft Technology Licensing, LLC
- Applicant Address: US WA Redmond
- Assignee: Microsoft Technology Licensing, LLC
- Current Assignee: Microsoft Technology Licensing, LLC
- Current Assignee Address: US WA Redmond
- Agency: Fiala & Weaver P.L.L.C.
- Main IPC: H04L9/00
- IPC: H04L9/00 ; G06F21/55 ; G06F21/60 ; H04L29/06

Abstract:
Systems and methods for identifying a security risk include a security group analyzer that identifies a first set of users belonging to a security group such as a local administrators' group. A privileges analyzer identifies a second set of users having one or more privileges gained from user rights assignments that may pose a security risk. An autostart extensibility point (ASEP) access analyzer identifies a third set of users by identifying users having access to an ASEP entry or an image path identified by an ASEP entry. A security risk identifier identifies security risks by identifying users that are in the second or third set of users but are not in the first set of users. A security handler performs a responsive action in response to the identification of the security risk. A security graph builder uses the identified interrelationships to build a security graph that illustrates the security risks.
Public/Granted literature
- US20190258799A1 SYSTEM AND METHOD FOR MONITORING EFFECTIVE CONTROL OF A MACHINE Public/Granted day:2019-08-22
Information query