IP Library Granted Patent US 8,230,497
Granted Patent B2
US 8,230,497 · App. 10/287,125 · Granted Jul 24, 2012

Method of identifying software vulnerabilities on a computer system

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,230,497
App. No.
10/287,125
Granted
Jul 24, 2012
Kind
B2
Abstract

A method of identifying a software vulnerability on a computer system is disclosed in which the computer system has software stored thereon and is connected to a management system over a computer network. The method comprises the steps of: applying an interrogation program to the software, the interrogation program being capable of exploiting a known software vulnerability if it is present in the software to which the interrogation program is applied; in the event that the software vulnerability is exploited by the interrogation program, operating the interrogation program to generate a set of management information from which can be derived the identification of the computer system; and sending the management information to the management system.

Claims (31)

1. A computer program stored on a non-transitory computer usable medium, the computer program comprising computer-readable instructions arranged to operate under the control of a processing means so as to identify a software vulnerability on a computer system, the computer program performing the steps of:

selecting one or more computer systems to be scanned for a software vulnerability;

applying an interrogation program to software stored on the computer system, the interrogation program being capable of exploiting a known software vulnerability if it is present in the software to which the interrogation program is applied; and

in the event that the software vulnerability is exploited by the interrogation program, operating the interrogation program to generate a set of management information from which can be derived at least an identification of the computer system on which the software vulnerability was exploited, the computer program being capable of sending the generated set of management information over a computer network,

wherein the interrogation program is further arranged to remediate the known software vulnerability in response to it being identified.

2. A computer program stored on a non-transitory computer usable medium, the computer program comprising computer-readable instructions arranged to operate under the control of a processing means so as to identify software vulnerabilities in a computer network to which the processing means is connected, the computer network comprising a plurality of computer systems having software stored thereon, the computer program performing the steps of:

(a) sending at least one interrogation program to each computer system selected by a user to be scanned for a software vulnerability, the at least one interrogation program being arranged to exploit a known software vulnerability if it is present in the software of the computer system to which the interrogation program is applied, and operating the at least one interrogation program to generate management information at the computer system on which a known software vulnerability is exploited, the management information identifying the computer system and the particular software vulnerability present on that computer system; and

(b) receiving management information generated by each interrogation program, wherein the at least one interrogation program sent by the computer program is further capable of remediating the software vulnerability it is capable of identifying, and wherein in the event that the interrogation program identifies a software vulnerability, the interrogation program operates to remediate said software vulnerability.

3. A computer program according to claim 2 , wherein the computer program is arranged to generate, in accordance with the received management information, a database of computer systems on the computer network which have particular software vulnerabilities.

4. A computer program according to claim 2 , wherein the management information includes a respective network address associated with each computer system on which the software vulnerability was identified.

5. A computer program according to claim 4 , wherein the network address is an IP address of the respective computer system.

6. A computer program according to claim 2 , wherein, in response to receiving management information from an interrogation program indicating the presence of a particular software vulnerability, the computer program receives a remediation program appropriate to the particular software vulnerability and sends said retrieved remediation program to the interrogation program.

7. A computer program stored on a non-transitory computer usable medium, the computer program comprising computer-readable instructions arranged to operate under the control of a processing mean so as to identify a software vulnerability on a computer system having software stored thereon, the computer program being arranged:

to interrogate the software of the computer system to detect the presence of a known software vulnerability if it is present in the software, wherein the computer system is designated by a user to be scanned for a software vulnerability;

in the event that a vulnerability is detected, to generate a set of management information from which can be derived an identification of the computer system; to send the set of management information to a computer network; and

to remediate the known software vulnerability in response to it being identified.

8. A computer network comprising:

a scanning system;

a management system; and

a plurality of computer systems, the scanning system being arranged to send at least one interrogation program to each of the computer systems selected by a user to be scanned for a software vulnerability, the at least one interrogation program being arranged to exploit a known software vulnerability if it is present in software of a computer system to which the interrogation program is applied, to generate management information in the event that a known software vulnerability is exploited, and to send the generated management information to the management system, the management information identifying the computer system on which the known vulnerability was exploited and the particular software vulnerability present on that computer system, wherein the at least one interrogation program is further arranged to remediate the known software vulnerability in response to it being identified.

9. A method of identifying a software vulnerability on a computer system having software stored thereon, the computer system being connected to a management system over a computer network, the method comprising:

selecting one or more computer systems to be scanned for a software vulnerability;

applying an interrogation program to the software, the interrogation program being capable of exploiting a known software vulnerability if it is present in the software to which the interrogation program is applied;

in the event that a software vulnerability is exploited by the interrogation program, operating the interrogation program to generate a set of management information from which can be derived the identification of the computer system having the software vulnerability; and

sending the set of management information to the management system via the computer network, wherein the interrogation program is further arranged to remediate the known software vulnerability in response to it being identified, and, wherein the management system selects the interrogation program that is applied to the software.

10. A method of identifying a software vulnerability on a computer system having software stored thereon, the computer system being connected to a management system over a computer network, the method comprising:

selecting one or more computer systems to be scanned for a software vulnerability;

applying an interrogation program to the software, the interrogation program being capable of (i) exploiting a known software vulnerability if it is present in the software to which the interrogation program is applied and (ii) remediating the known software vulnerability it is arranged to exploit:

in the event that a software vulnerability is exploited by the interrogation program, operating the interrogation program to remediate the software vulnerability so exploited and generate a set of management information from which can be derived an identification of the computer system having the software vulnerability; and

sending the set of management information to the management

system via the computer network, wherein the management system selects the interrogation program that is applied to the software.

Assignments (5)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 22, 2024
From: QUEST PATENT RESEARCH CORPORATION
To: FLASH UPLINK LLC
Reel/Frame 066878/0656 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 16, 2023
From: HEWLETT PACKARD ENTERPRISE DEVELOPMENT LP; HEWLETT PACKARD ENTERPRISE COMPANY
To: QUEST PATENT RESEARCH CORPORATION
Reel/Frame 062725/0741 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 9, 2015
From: HEWLETT-PACKARD DEVELOPMENT COMPANY, L.P.
To: HEWLETT PACKARD ENTERPRISE DEVELOPMENT LP
Reel/Frame 037079/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 23, 2006
From: NORMAN, ANDREW PATRICK; BRAWN, JOHN M.; SCRIMSHER, JOHN P.; GRIFFIN, JONATHAN
To: HEWLETT-PACKARD DEVELOPMENT COMPANY, L.P.
Reel/Frame 018444/0855 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 18, 2003
From: HEWLETT-PACKARD COMPANY
To: HEWLETT-PACKARD DEVELOPMENT COMPANY, L.P.
Reel/Frame 013776/0928 →