IP Library Granted Patent US 12695777
Granted Patent B2
US 12695777 · App. 18/694,006 · Granted Jul 28, 2026

Data processing device, data processing method, and recording medium

Inventors: Hirofumi Ueda (Tokyo, JP); Kazuaki Nakajima (Tokyo, JP)
Assignee: NEC CORPORATION
H04L63/1433H04L63/1425
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12695777
App. No.
18/694,006
Granted
Jul 28, 2026
Kind
B2
Abstract

A setting unit ( 11 ) sets a path or a procedure for a cyber attack that is obtained through analysis of a risk to a communication system. A collection unit ( 12 ) collects safety information that is associated with safety in terms of information security regarding the constituent apparatuses of a communication system. An evaluation unit ( 13 ) evaluates the magnitude of a security risk present in the communication system, in accordance with the path or procedure for the cyber attack, on the basis of the security information, the security risk to a constituent apparatus related to the path or procedure for the cyber attack being evaluated to be lower when inspection for information security has been carried out on the constituent apparatus related to the path or procedure for the cyber attack than when inspection for information security is not carried out.

Claims (38)

1 . A data processing device comprising:

a memory configured to store instructions; and

at least one processor configured to execute the instructions to:

set a path or a procedure for a cyber attack obtained through analysis of a risk to a communication system;

collect safety information associated with safety in terms of information security regarding a constituent apparatus of the communication system;

evaluate, based on the safety information, a magnitude of a security risk present in the communication system in accordance with the path or the procedure, wherein the safety information includes information indicating whether an inspection for the information security is performed on the constituent apparatus;

in a case where the inspection for the information security is performed on the constituent apparatus related to the path or the procedure, evaluate the security risk to be lower than the security risk in a case where the inspection for the information security is not performed on the constituent apparatus related to the path or the procedure; and

calculate a second evaluation index representing the magnitude of the security risk based on a ratio of a number of constituent apparatuses of the communication system on the path on which the inspection for the information security has been performed to a number of the constituent apparatuses on the path.

2 . The data processing device according to claim 1 , wherein

the at least one processor is further configured to execute the instructions to:

cause a display device to display a result of the evaluation indicating the magnitude of the security risk together with information indicating the procedure assumed in the cyber attack.

3 . The data processing device according to claim 1 , wherein

the at least one processor is further configured to execute the instructions to:

calculate a first evaluation index representing the magnitude of the security risk based on a threat level indicating a likelihood of occurrence of a threat to the communication system and a vulnerability level indicating a likelihood of acceptance of the threat that has occurred by the communication system.

4 . The data processing device according to claim 1 , wherein

the at least one processor is further configured to execute the instructions to:

change a result of the evaluation depending on a type of the performed inspection for the information security.

5 . The data processing device according to claim 1 , wherein

the at least one processor is further configured to execute the instructions to:

change a result of the evaluation depending on origin of the constituent apparatus on which the inspection for the information security has been performed.

6 . A data processing method comprising:

setting a path or a procedure for a cyber attack obtained through analysis of a risk to a communication system;

collecting safety information associated with safety in terms of information security regarding a constituent apparatus of the communication system, the safety information including information indicating whether an inspection for the information security is performed on the constituent apparatus;

evaluating, based on the safety information, a magnitude of a security risk present in the communication system in accordance with the path or the procedure;

in a case where the inspection for the information security is performed on the constituent apparatus related to the path or the procedure, evaluating the security risk to be lower than the security risk in a case where the inspection for the information security is not performed on the constituent apparatus related to the path or the procedure; and

calculating a second evaluation index representing the magnitude of the security risk based on a ratio of a number of constituent apparatuses of the communication system on the path on which the inspection for the information security has been performed to a number of the constituent apparatuses on the path.

7 . The data processing method according to claim 6 , further comprising:

causing a display device to display a result of the evaluation indicating the magnitude of the security risk together with information indicating the procedure assumed in the cyber attack.

8 . A non-transitory recording medium storing a program configured to cause a computer to perform:

setting a path or a procedure for a cyber attack obtained through analysis of a risk to a communication system;

collecting safety information associated with safety in terms of information security regarding a constituent apparatus of the communication system, the safety information including information indicating whether an inspection for the information security is performed on the constituent apparatus;

evaluating, based on the safety information, a magnitude of a security risk present in the communication system in accordance with the path or the procedure;

in a case where the inspection for the information security is performed on the constituent apparatus related to the path or the procedure, evaluating the security risk to be lower than the security risk in a case where the inspection for the information security is not performed on the constituent apparatus related to the path or the procedure; and

calculating a second evaluation index representing the magnitude of the security risk based on a ratio of a number of constituent apparatuses of the communication system on the path on which the inspection for the information security has been performed to a number of the constituent apparatuses on the path.

9 . The non-transitory recording medium according to claim 8 , wherein the program is further configured to cause the computer to perform:

causing a display device to display a result of the evaluation indicating the magnitude of the security risk together with information indicating the procedure assumed in the cyber attack.

10 . The non-transitory recording medium according to claim 8 , wherein the program is further configured to cause the computer to perform:

changing a result of the evaluation depending on origin of the constituent apparatus on which the inspection for the information security has been performed.