IP Library Granted Patent US 10,395,040
Granted Patent B2
US 10,395,040 · App. 15/653,293 · Granted Aug 27, 2019

System and method for identifying network security threats and assessing network security

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,395,040
App. No.
15/653,293
Granted
Aug 27, 2019
Kind
B2
Abstract

A system and method of security assessment of a network is described. The system may include one or more security assessment computers controlled by a security assessor, and connected to a network, and first executable program code for acting as an agent on a first end device on the network. The first executable program code is configured to be executed by a browser application of the first end device, and is configured to collect software information, hardware information, and/or vulnerability information of the first end device and transmit the same to a first security assessment computer of the one or more security assessment computers. The information may be transmitted as part of a domain name server (DNS) request. The DNS request may include information identifying the first end device to thus allow modification of the first end device in response to analysis of the collected information.

Claims (39)

1. A method for security assessment of a computer network, the method comprising:

transmitting a first executable program code from a security assessor that controls one or more security assessment computers on a network to a first end device on the network, the first executable program code for acting as an agent on the first end device, and the first executable program code configured to be executed by a browser application of the first end device,

wherein the first executable program code is configured to collect software and/or hardware attribute information regarding the first end device and transmit the same to at least a first security assessment computer of the one or more security assessment computers,

wherein the first executable program code is configured to collect vulnerability information of the first end device, and

wherein the vulnerability information of the first end device is received by at least the first security assessment computer;

transmitting a second executable program code from the security assessor to the first end device, the second executable program code for acting as an agent on the first end device, and the second executable program code configured to be executed by the browser application of the first end device,

wherein the second executable program code is selected based on the vulnerability information of the first end device received by at least the first security assessment computer, and

wherein the second executable program code is configured to be used to perform a security assessment using the first end device;

displaying results of the security assessment;

selecting an artifact from the displayed results; and

automatically querying a third party security database based on the selected artifact for security information related to the artifact.

2. The method of claim 1 , wherein:

the first executable program code is configured to form a URL that is used to include the software and/or hardware attribute information.

3. The method of claim 1 , wherein:

the security assessment includes performing one or more of: exfiltration, destruction of data, or modification of data.

4. The method of claim 1 , wherein:

the security assessment includes performing denial of access to information.

5. The method of claim 1 , wherein:

the second executable program code is configured to be automatically deleted from the first end device.

6. The method of claim 5 , wherein:

the second executable program code is configured to be stored in a browser cache of the first end device.

7. The method of claim 1 , wherein:

the first executable program code is configured to be automatically deleted from the first end device.

8. The method of claim 7 , wherein:

the first executable program code is configured to be stored in a browser cache of the first end device.

9. A method for security assessment of a computer network, the method comprising:

receiving a first executable program code at a first end device on the computer network, the first executable program code for acting as an agent on the first end device, and the first executable program code configured to be executed by a browser application of the first end device;

executing the first executable program code via the browser application to collect software and/or hardware attribute information regarding the first end device;

transmitting the software and/or hardware attribute information from the first end device to at least a first security assessment computer of a security assessor,

wherein the first executable program code is configured to collect vulnerability information of the first end device, and

wherein the vulnerability information of the first end device is sent to at least the first security assessment computer;

receiving a second executable program code from the security assessor at the first end device, the second executable program code for acting as an agent on the first end device, and the second executable program code configured to be executed by the browser application of the first end device,

wherein the second executable program code is selected based on the vulnerability information of the first end device sent to at least the first security assessment computer;

executing the second executable program code by the browser application to perform a security assessment using the first end device;

displaying results of the security assessment;

selecting an artifact from the displayed results; and

automatically querying a third party security database based on the selected artifact for security information related to the artifact.

10. The method of claim 9 , wherein:

the first executable program code is configured to form a URL that is used to include the software and/or hardware attribute information.

Assignments (5)
RELEASE OF SECURITY INTEREST Recorded May 1, 2024
From: SIXTH STREET SPECIALTY LENDING, INC.
To: RELIAQUEST HOLDINGS, LLC
Reel/Frame 067277/0607 →
SECURITY INTEREST Recorded Apr 30, 2024
From: RELIAQUEST HOLDINGS, LLC
To: GOLUB CAPITAL LLC, AS COLLATERAL AGENT
Reel/Frame 067274/0381 →
SECURITY INTEREST Recorded Oct 8, 2020
From: RELIAQUEST HOLDINGS, LLC
To: SIXTH STREET SPECIALTY LENDING, INC., AS COLLATERAL AGENT
Reel/Frame 054013/0548 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 8, 2020
From: VTHREAT, INC.; RELIAQUEST HOLDINGS, LLC
To: RELIAQUEST HOLDINGS, LLC
Reel/Frame 052341/0912 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 25, 2017
From: CAREY, MARCUS J.; OYENIYI, TOLULOPE
To: VTHREAT, INC.
Reel/Frame 043088/0752 →