The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Jul. 02, 2019

Filed:

Apr. 09, 2018
Applicant:

Cyberark Software Ltd., Petach-Tikva, IL;

Inventors:

Lavi Lazarovitz, Petach-Tikva, IL;

Asaf Hecht, Petach-Tikva, IL;

Assignee:

CYBERARK SOFTWARE LTD., Petach-Tikva, IL;

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 29/06 (2006.01); H04L 12/26 (2006.01); H04L 12/24 (2006.01); H04W 12/12 (2009.01); H04W 12/06 (2009.01);
U.S. Cl.
CPC ...
H04L 63/10 (2013.01); H04L 41/0893 (2013.01); H04L 43/065 (2013.01); H04L 63/08 (2013.01); H04L 63/1425 (2013.01); H04L 63/1433 (2013.01); H04W 12/06 (2013.01); H04W 12/12 (2013.01);
Abstract

Disclosed embodiments include identifying a first identity having a first level of privileged network access, identifying a network resource that the first identity is communicating with, classifying the network resource as a network resource to be dynamically monitored, dynamically monitoring connections activity of the identified network resource to determine a second identity, wherein the second identity is determined based on it having a second level of privileged network access that is different from the first level of privileged network access and having attempted to establish a connection with the network resource, classifying, based on the determination of the second identity, the network resource as a potential source of privileged access escalation vulnerabilities, and performing, based on the classification that the network resource is a potential source of privileged access escalation vulnerabilities, at least one of: triggering an alert regarding the potential source of privileged access escalation vulnerabilities, performing a network security remediation operation for at least one of the first identity, the second identity, and the network resource, and identifying a plurality of other identities with levels of privileged network access different from the first level of privileged network access and that have attempted to establish connections with the network resource.


Find Patent Forward Citations

Loading…