IP Library Granted Patent US 12,393,693
Granted Patent B2
US 12,393,693 · App. 17/380,918 · Granted Aug 19, 2025

System for query-based interactive risk model analysis for secure software development

Inventors: Soumya Maity (Bengaluru, IN); Lokesh Balu Sudakar (Bangalore, IN)
Assignee: EMC IP Holding Company LLC
G06F21/577G06F16/245G06F16/288G06T11/206G06F2221/033G06F2221/034G06T2200/24
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,393,693
App. No.
17/380,918
Granted
Aug 19, 2025
Kind
B2
Abstract

One example method includes receiving a user query that relates to a potential vulnerability of a product, and the product includes hardware and/or software, based on information in the user query, ingesting multiple different datasets from different respective data sources, using data in the datasets to generate a respective graph model corresponding to each dataset, identifying relationships among the datasets, and building, and presenting to a user, a visualization that graphically displays each graph model, and indicates relationships between the datasets, and relationships between the data sources.

Claims (32)

1. A method, comprising operations:

receiving a user query that relates to a potential vulnerability of a product, wherein the product comprises hardware and/or software;

based on information in the user query, ingesting data from multiple different datasets and different respective data sources;

normalizing the ingested data;

using the normalized data in the datasets to generate a respective graph model corresponding to each dataset;

identifying relationships among the datasets;

generating a visualization of a master graph which includes a convergence of multiple graph models by using the relationships which have been identified among the datasets; and

building and presenting to a user the visualization of the master graph that graphically displays each graph model, and indicates relationships between the datasets, and relationships between the data sources,

wherein the operations further comprise automatically updating the visualization in response to addition of a new or modified dataset to the visualization.

2. The method as recited in claim 1 , further comprising presenting, to the user, one or more user-selectable controls which, when implemented in the product, eliminates the potential vulnerability from the product.

3. The method as recited in claim 2 , wherein the operations further comprise receiving, from the user, a selection of one of the user-selectable controls, and indicating the selection to a product development entity.

4. The method as recited in claim 1 , wherein building the visualization comprises filtering, mapping, and rendering, information contained in the graph models.

5. The method as recited in claim 1 , wherein the operations are performed by an analytics platform operable to interact with a secure software development platform.

6. The method as recited in claim 1 , wherein the ingested data is heterogeneous.

7. The method as recited in claim 1 , wherein the visualization is presented to a user by way of a graphical user interface.

8. The method as recited in claim 1 , wherein the visualization is generated in response to, and based upon, the user query.

9. A computer readable storage medium having stored therein instructions that are executable by one or more hardware processors to perform operations comprising:

receiving a user query that relates to a potential vulnerability of a product, wherein the product comprises hardware and/or software;

based on information in the user query, ingesting data from multiple different datasets and different respective data sources;

normalizing the ingested data;

using the normalized data in the datasets to generate a respective graph model corresponding to each dataset;

identifying relationships among the datasets;

generating a visualization of a master graph, which includes a convergence of multiple graph models by using the relationships which have been identified among the datasets; and

building and presenting to a user the visualization of the master graph that graphically displays each graph model, and indicates relationships between the datasets, and relationships between the data sources,

wherein the operations further comprise automatically updating the visualization in response to addition of a new or modified dataset to the visualization.

10. The computer readable storage medium as recited in claim 9 , further comprising presenting, to the user, one or more user-selectable controls which, when implemented in the product, eliminates the potential vulnerability from the product.

11. The computer readable storage medium as recited in claim 10 , wherein the operations further comprise receiving, from the user, a selection of one of the user-selectable controls, and indicating the selection to a product development entity.

12. The computer readable storage medium as recited in claim 9 , wherein building the visualization comprises filtering, mapping, and rendering, information contained in the graph models.

13. The computer readable storage medium as recited in claim 9 , wherein the operations are performed by an analytics platform operable to interact with a secure software development platform.

14. The computer readable storage medium as recited in claim 9 , wherein the ingested data is heterogeneous.

15. The computer readable storage medium as recited in claim 9 , wherein the visualization is presented to a user by way of a graphical user interface.

16. The computer readable storage medium as recited in claim 9 , wherein the visualization is generated in response to, and based upon, the user query.

Assignments (8)
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (058014/0560) Recorded Jun 10, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 062022/0473 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (057931/0392) Recorded Jun 10, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 062022/0382 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (057758/0286) Recorded Jun 10, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 061654/0064 →
SECURITY INTEREST Recorded Oct 6, 2021
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
Reel/Frame 058014/0560 →
SECURITY INTEREST Recorded Oct 6, 2021
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
Reel/Frame 057758/0286 →
SECURITY INTEREST Recorded Oct 6, 2021
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
Reel/Frame 057931/0392 →
SECURITY AGREEMENT Recorded Oct 1, 2021
From: DELL PRODUCTS, L.P.; EMC IP HOLDING COMPANY LLC
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
Reel/Frame 057682/0830 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 20, 2021
From: MAITY, SOUMYA; SUDAKAR, LOKESH BALU
To: EMC IP HOLDING COMPANY
Reel/Frame 056923/0054 →
Priority Claims (1)
IN 202111023662 · May 27, 2021 · national
Continuity (1)
Related Publication 20220382878A1 · Dec 1, 2022
References Cited (5)
US 9529863B1 · Gindin · 2016 [cited by examiner]
US 10705695B1 · Porath · 2020 [cited by examiner]
US 20170289187A1 · Noel · 2017 [cited by examiner]
US 20190332607A1 · Leung · 2019 [cited by examiner]
US 20210141831A1 · Sherman · 2021 [cited by examiner]