Invention Grant
- Patent Title: Advanced cybersecurity threat mitigation using software supply chain analysis
-
Application No.: US16855724Application Date: 2020-04-22
-
Publication No.: US11218510B2Publication Date: 2022-01-04
- Inventor: Jason Crabtree , Andrew Sellers
- Applicant: QOMPLX, Inc.
- Applicant Address: US VA Tysons
- Assignee: QOMPLX, Inc.
- Current Assignee: QOMPLX, Inc.
- Current Assignee Address: US VA Tysons
- Agency: Galvin Patent Law LLC
- Agent Brian R. Galvin
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F16/2458 ; G06F16/951

Abstract:
A system and method for comprehensive cybersecurity threat assessment of software applications based on the totality of vulnerabilities from all levels of the software supply chain. The system and method comprising analyzing the code and/or operation of a software application to determine components comprising the software, identifying the source of such components, determining vulnerabilities associated with those components, compiling a list of such components, creating a directed graph of relationships between the components and their sources, and evaluating the overall threat associated with the software application based its software supply chain vulnerabilities.
Public/Granted literature
- US20210021644A1 ADVANCED CYBERSECURITY THREAT MITIGATION USING SOFTWARE SUPPLY CHAIN ANALYSIS Public/Granted day:2021-01-21
Information query