Invention Grant
US08091065B2 Threat analysis and modeling during a software development lifecycle of a software application
有权
在软件应用程序的软件开发生命周期中的威胁分析和建模
- Patent Title: Threat analysis and modeling during a software development lifecycle of a software application
- Patent Title (中): 在软件应用程序的软件开发生命周期中的威胁分析和建模
-
Application No.: US11860900Application Date: 2007-09-25
-
Publication No.: US08091065B2Publication Date: 2012-01-03
- Inventor: Talhah Munawar Mir , Anil Kumar Venkata Revuru , Deepak J. Manohar , Vineet Batta
- Applicant: Talhah Munawar Mir , Anil Kumar Venkata Revuru , Deepak J. Manohar , Vineet Batta
- Applicant Address: US WA Redmond
- Assignee: Microsoft Corporation
- Current Assignee: Microsoft Corporation
- Current Assignee Address: US WA Redmond
- Agency: Lee & Hayes, PLLC
- Main IPC: G06F9/44
- IPC: G06F9/44 ; G06F9/45

Abstract:
Systems and methods relating to a method for generating a threat analysis and modeling tool are described. In an implementation, aggregate analysis is performed upon applications of an enterprise for complete risk management of the enterprise. The threat analysis model is generated by defining the application, its attributes and the rules related to the application. An application task list is generated from a common task list for the application. Countermeasures for known attacks pertaining to the application are described in the application task list, which allows the developer to reduce the risk of attacks.
Public/Granted literature
- US20090083695A1 Enterprise Threat Analysis and Modeling Public/Granted day:2009-03-26
Information query