The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Dec. 23, 2014

Filed:

Jun. 14, 2006
Applicants:

Joe B. Boyle, San Francisco, CA (US);

Mark Wittenberg, Walnut Creek, CA (US);

Yves Perrenoud, San Francisco, CA (US);

Timothy D. Keanini, Austin, TX (US);

Inventors:

Joe B. Boyle, San Francisco, CA (US);

Mark Wittenberg, Walnut Creek, CA (US);

Yves Perrenoud, San Francisco, CA (US);

Timothy D. Keanini, Austin, TX (US);

Assignee:

Tripwire, Inc., Portland, OR (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G06F 12/14 (2006.01);
U.S. Cl.
CPC ...
Abstract

An enterprise network includes hosts running services. Some of the services have security vulnerabilities. There are one or more threat zones associated with the network. For example, a firewall may create two threat zones, one internal to the firewall and one external to it. A device profiler in the first threat zone profiles the hosts on the network and identifies the vulnerabilities that are present. A device profiler in the second threat zone determines which of the identified vulnerabilities are accessible from its zone. A risk module calculates the risk associated with a vulnerability based on the vulnerability's severity, threat level metrics for the threat zones, and an asset value of the host with the vulnerability. A reporting module prioritizes the vulnerabilities based on their risks.


Find Patent Forward Citations

Loading…