Invention Grant
- Patent Title: Systems and methods for identifying insider threats in code
-
Application No.: US15290656Application Date: 2016-10-11
-
Publication No.: US09798884B1Publication Date: 2017-10-24
- Inventor: Jack L. Bishop, III , Jason D. Montgomery , Kelley S. Campbell , Dennis Mederios
- Applicant: Veracode, Inc.
- Applicant Address: US MA Burlington
- Assignee: Veracode, Inc.
- Current Assignee: Veracode, Inc.
- Current Assignee Address: US MA Burlington
- Agency: Goodwin Procter LLP
- Main IPC: G06F21/57
- IPC: G06F21/57 ; G06F21/56 ; G06N99/00

Abstract:
In a system for detecting composite vulnerabilities associated with a process or a context, individual defects/vulnerabilities in a software system/application are identified and clustered into two or more classes of defects, where each class includes one or more defects of related types. Given a pattern of defects of different types, where the pattern represents a composite vulnerability, it is determined by searching in the clusters, if the software system/application includes all of the defects/vulnerabilities associated with that pattern.
Information query