IP Library Granted Patent US 10,848,513
Granted Patent B2
US 10,848,513 · App. 16/433,032 · Granted Nov 24, 2020

Threat mitigation system and method

Inventors: Brian P. Murphy (Tampa, FL); Joe Partlow (Tampa, FL); Colin O'Connor (Tampa, FL); Jason Pfeiffer (Tampa, FL)
Assignee: ReliaQuest Holdings, LLC
H04L63/1425G06F8/65G06F21/53G06F21/55G06F21/554G06F21/56G06F21/561G06F21/562G06F21/566G06F21/577G06K9/6256G06N20/00H04L63/0227H04L63/145H04L63/1416H04L63/1433H04L63/1441H04L63/164H04L63/20G06F2221/034G06F2221/2115
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,848,513
App. No.
16/433,032
Granted
Nov 24, 2020
Kind
B2
Abstract

A computer-implemented method, computer program product and computing system for: allowing a third-party to select a training routine for a specific attack of a computing platform, thus defining a selected training routine; analyzing the requirements of the selected training routine to determine a quantity of entities required to effectuate the selected training routine, thus defining one or more required entities; generating one or more virtual machines to emulate the one or more required entities; and generating a simulation of the specific attack by executing the selected training routine.

Claims (61)

1. A computer-implemented method, executed on a computing device, comprising:

defining a selected training routine including receiving, from a third-party, a selection of a training routine for a specific attack of a computing platform;

analyzing requirements of the selected training routine to determine a quantity of entities required to effectuate the selected training routine to define one or more required entities;

generating one or more virtual machines to emulate the one or more required entities, wherein each of the one or more virtual machines that are generated correspond to a respective required entity of the one or more required entities, wherein the respective entity includes at least one of an attacked device, a first attacking device, and a second attacking device;

generating a simulation of the specific attack by executing the selected training routine;

rendering a view of the simulation of the specific attack for a trainee; and

receiving a trainee response to the simulation of the specific attack from the trainee, including revising the training routine for the specific attack based, at least in part, upon the trainee response.

2. The computer-implemented method of claim 1 wherein defining a selected training routine includes:

receiving, from the third-party, a selection of a specific training routine from a plurality of available training routines.

3. The computer-implemented method of claim 1 wherein generating the simulation of the specific attack by executing the selected training routine includes:

rendering the simulation of the specific attack by executing the selected training routine within a controlled test environment.

4. The computer-implemented method of claim 3 wherein the controlled test environment is a virtual machine executed on the computing device.

5. The computer-implemented method of claim 1 further comprising:

determining an effectiveness of the trainee response.

6. The computer-implemented method of claim 5 wherein determining the effectiveness of the trainee response includes:

assigning a grade to the trainee response.

7. The computer-implemented method of claim 1 further comprising:

ceasing the simulation of the specific attack.

8. The computer-implemented method of claim 7 wherein ceasing the simulation of the specific attack includes:

shutting down the one or more virtual machines.

9. A computer program product residing on a non-transitory computer readable medium having a plurality of instructions stored thereon which, when executed by a processor, cause the processor to perform operations comprising:

defining a selected training routine including receiving, from a third-party, a selection of a training routine for a specific attack of a computing platform;

analyzing requirements of the selected training routine to determine a quantity of entities required to effectuate the selected training routine to define one or more required entities;

generating one or more virtual machines to emulate the one or more required entities, wherein each of the one or more virtual machines that are generated correspond to a respective required entity of the one or more required entities, wherein the respective entity includes at least one of an attacked device, a first attacking device, and a second attacking device;

generating a simulation of the specific attack by executing the selected training routine;

rendering a view of the simulation of the specific attack for a trainee; and

receiving a trainee response to the simulation of the specific attack from the trainee, including revising the training routine for the specific attack based, at least in part, upon the trainee response.

10. The computer program product of claim 9 wherein defining a selected training routine includes:

receiving, from the third-party, a selection of a specific training routine from a plurality of available training routines.

11. The computer program product of claim 9 wherein generating the simulation of the specific attack by executing the selected training routine includes:

rendering the simulation of the specific attack by executing the selected training routine within a controlled test environment.

12. The computer program product of claim 11 wherein the controlled test environment is a virtual machine executed on the computing device.

13. The computer program product of claim 9 further comprising:

determining an effectiveness of the trainee response.

14. The computer program product of claim 13 wherein determining the effectiveness of the trainee response includes:

assigning a grade to the trainee response.

15. The computer program product of claim 9 further comprising:

ceasing the simulation of the specific attack.

16. The computer program product of claim 15 wherein ceasing the simulation of the specific attack includes:

shutting down the one or more virtual machines.

17. A computing system comprising:

a hardware processor and a memory configured to perform operations comprising:

defining a selected training routine including receiving, from a third-party, a selection of a training routine for a specific attack of a computing platform;

analyzing requirements of the selected training routine to determine a quantity of entities required to effectuate the selected training routine to define one or more required entities;

generating one or more virtual machines to emulate the one or more required entities, wherein each of the one or more virtual machines that are generated correspond to a respective required entity of the one or more required entities, wherein the respective entity includes at least one of an attacked device, a first attacking device, and a second attacking device;

generating a simulation of the specific attack by executing the selected training routine;

rendering a view of the simulation of the specific attack for a trainee; and

receiving a trainee response to the simulation of the specific attack from the trainee, including revising the training routine for the specific attack based, at least in part, upon the trainee response.

18. The computing system of claim 17 wherein defining a selected training routine includes:

receiving, from the third-party, a selection of a specific training routine from a plurality of available training routines.

19. The computing system of claim 17 wherein generating the simulation of the specific attack by executing the selected training routine includes:

rendering the simulation of the specific attack by executing the selected training routine within a controlled test environment.

20. The computing system of claim 19 wherein the controlled test environment is a virtual machine executed on the computing device.

21. The computing system of claim 17 further comprising:

determining an effectiveness of the trainee response.

22. The computing system of claim 21 wherein determining the effectiveness of the trainee response includes:

assigning a grade to the trainee response.

23. The computing system of claim 17 further comprising:

ceasing the simulation of the specific attack.

24. The computing system of claim 23 wherein ceasing the simulation of the specific attack includes:

shutting down the one or more virtual machines.

Assignments (4)
RELEASE OF SECURITY INTEREST Recorded May 1, 2024
From: SIXTH STREET SPECIALTY LENDING, INC.
To: RELIAQUEST HOLDINGS, LLC
Reel/Frame 067277/0607 →
SECURITY INTEREST Recorded Apr 30, 2024
From: RELIAQUEST HOLDINGS, LLC
To: GOLUB CAPITAL LLC, AS COLLATERAL AGENT
Reel/Frame 067274/0381 →
SECURITY INTEREST Recorded Oct 8, 2020
From: RELIAQUEST HOLDINGS, LLC
To: SIXTH STREET SPECIALTY LENDING, INC., AS COLLATERAL AGENT
Reel/Frame 054013/0548 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 7, 2020
From: MURPHY, BRIAN P.; PARTLOW, JOE; O'CONNOR, COLIN; PFEIFFER, JASON
To: RELIAQUEST HOLDINGS, LLC
Reel/Frame 052333/0915 →
Continuity (4)
Provisional Application 62817943 · Mar 13, 2019
Provisional Application 62737558 · Sep 27, 2018
Provisional Application 62681279 · Jun 6, 2018
Related Publication 20190377867A1 · Dec 12, 2019