The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Sep. 27, 2022

Filed:

Aug. 22, 2019
Applicant:

Sonatype, Inc., Fulton, MD (US);

Inventors:

Brian Fox, Goffstown, NH (US);

Bruce Mayhew, Fulton, MD (US);

Jason Dillon, Fulton, MD (US);

Gazi Mahmud, Berkeley, CA (US);

Assignee:

Sonatype, Inc., Fulton, MD (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G06F 21/54 (2013.01); G06F 21/56 (2013.01); G06F 21/57 (2013.01); G06F 8/71 (2018.01);
U.S. Cl.
CPC ...
G06F 21/577 (2013.01); G06F 8/71 (2013.01); G06F 21/54 (2013.01); G06F 21/563 (2013.01);
Abstract

A computer system for security of components includes at least one processor. For a new version of a component, the processor determines, based on a dataset of release events over time, a historical behavioral analysis of (i) a project that is released with prior versions of the component, and/or (ii) historical committer behavior of a committer that committed the new version of the component, and/or (iii) historical behavior of a publisher of the project. The dataset of release events includes event data collected over time regarding open source project, committers, and repository. The processor determines whether the new version of the component presents an unusual risk profile, based on the historical behavioral analysis. The processor facilitates delayed consumption of the new version of the component in response to determining that the new version of the component presents the unusual risk profile.


Find Patent Forward Citations

Loading…