Invention Grant
- Patent Title: Expert system for detecting software security threats
- Patent Title (中): 用于检测软件安全威胁的专家系统
-
Application No.: US13571505Application Date: 2012-08-10
-
Publication No.: US08813235B2Publication Date: 2014-08-19
- Inventor: Michelangelo Sidagni
- Applicant: Michelangelo Sidagni
- Applicant Address: US NY New York
- Assignee: NopSec Inc.
- Current Assignee: NopSec Inc.
- Current Assignee Address: US NY New York
- Agency: Chadbourne & Parke LLP
- Main IPC: G06F21/00
- IPC: G06F21/00

Abstract:
An instance of a vulnerability risk management (VRM) module and a vulnerability management expert decision system (VMEDS) module are instantiated in a cloud. The VMEDS module imports scan results from a VRM vulnerability database and saves them as vulnerabilities to be reviewed in a VMEDS database. The VMEDS module converts vulnerabilities into facts. The VMEDS module builds a rule set in the knowledge base to verify whether certain vulnerabilities are false positives. Rules related to a vulnerability are received in plain English from a web-based front-end application. The VMEDS module tests each rule against all of the facts using the Rete algorithm. The VMEDS module executes the action associated with the rule derived from the Rete algorithm. The VMEDS module stores the results associated with the executing of the action in the VMEDS database and forwards the results to the VRM module.
Public/Granted literature
- US20140047545A1 EXPERT SYSTEM FOR DETECTING SOFTWARE SECURITY THREATS Public/Granted day:2014-02-13
Information query