Invention Publication
- Patent Title: SECURITY FINDING CATEGORIES-BASED PRIORITIZATION
-
Application No.: US18105928Application Date: 2023-02-06
-
Publication No.: US20240267400A1Publication Date: 2024-08-08
- Inventor: Jonathan GAZIT , Moshe ISRAEL , Dotan PATRICH
- Applicant: Microsoft Technology Licensing, LLC
- Applicant Address: US WA Redmond
- Assignee: Microsoft Technology Licensing, LLC
- Current Assignee: Microsoft Technology Licensing, LLC
- Current Assignee Address: US WA Redmond
- Main IPC: H04L9/40
- IPC: H04L9/40 ; G06F16/28

Abstract:
Some embodiments bridge a gap between focusing on security alerts raised by conditions and events that have already occurred, and focusing on vulnerabilities that might be exploited in the future. Alerts are organized into alert categories, vulnerabilities are organized into vulnerability categories, and are optionally supplemented with misconfiguration categories. Correlations are identified between alert categories and vulnerability or misconfiguration categories, and the correlation values noted, to produce category association rules. The alerts, vulnerabilities, and other security findings are gathered in some situations from multiple similar environments, and in some cases are filtered to pertain to similar resources or similar configurations. The category association rules are utilized to perform cybersecurity prioritizations such as assigning priority levels to alerts and assigning likelihood levels to potential breaches. Graphs showing resources and data flow paths are annotated with risk scores or with security findings relevant to the applicable category association rules.
Public/Granted literature
- US12289335B2 Security finding categories-based prioritization Public/Granted day:2025-04-29
Information query