IP Library Granted Patent US 11,888,873
Granted Patent B2
US 11,888,873 · App. 18/048,928 · Granted Jan 30, 2024

Attack surface identification

Inventors: Jason Emile Sumpter (Abingdon, MD); James Christopher Foster (Baltimore, MD); Michael Morgan Price (Baltimore, MD)
Assignee: ZeroFOX, Inc.
H04L63/1416G06F16/9566H04L63/20
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,888,873
App. No.
18/048,928
Granted
Jan 30, 2024
Kind
B2
Abstract

Systems and methods are provided to generate an attack surface for a protected entity. The method an include receiving identifying information associated with the protected entity; scanning one or more third parties to identify a host associated with the protected entity; determining that the host resolves to a webpage; resolving the webpage; extracting a uniform resource locator (URL) from the resolved webpage; determining, based on at least one rule, that the URL is associated with the protected entity; and generating the attack surface for the protected entity, the attack surface comprising the URL.

Claims (32)

1. A method for generating an attack surface for a protected entity comprising:

receiving identifying information associated with the protected entity;

scanning one or more third parties to identify a host associated with the protected entity;

determining that the host resolves to a webpage;

resolving the webpage;

extracting a uniform resource locator (URL) from the resolved webpage;

determining, based on at least one rule, that the URL is associated with the protected entity;

generating the attack surface for the protected entity, the attack surface comprising the URL; and

maintaining the generated attack surface on a storage medium; and

monitoring the maintained attack surface to protect the protected entity.

2. The method of claim 1 , wherein extracting the URL comprises crawling the resolved webpage.

3. The method of claim 1 , wherein extracting the URL comprises scraping the resolved webpage.

4. The method of claim 1 comprising:

determining that a social media account from the URL is associated with the protected entity; and

modifying the attack surface for the protected entity to include the social media account.

5. The method of claim 1 , wherein determining, based on the at least one rule, that the URL is associated with the protected entity comprises determining that the URL is associated with GitHub.

6. A non-transitory computer-readable medium having instructions stored thereon for execution by a server to implement a method for generating an attack surface for a protected entity, the method comprising the steps of:

receiving identifying information associated with the protected entity;

scanning one or more third parties to identify a host associated with the protected entity;

determining that the host resolves to a webpage;

resolving the webpage;

extracting a uniform resource locators (URLs) from the resolved webpage;

determining, based on at least one rule, that the URL is associated with the protected entity; and

generating the attack surface for the protected entity, the attack surface comprising the URL; and

maintaining the generated attack surface on a storage medium; and

monitoring the maintained attack surface to protect the protected entity.

7. The non-transitory computer-readable medium of claim 6 , wherein extracting the URL comprises crawling the resolved webpage.

8. The non-transitory computer-readable medium of claim 6 , wherein extracting the URL comprises scraping the resolved webpage.

9. The non-transitory computer-readable medium of claim 6 , wherein the method further comprises:

determining that a social media account from the URL is associated with the protected entity; and

modifying the attack surface for the protected entity to include the social media account.

10. The non-transitory computer-readable medium of claim 6 , wherein determining, based on the at least one rule, that the URL is associated with the protected entity comprises determining that the URL is associated with GitHub.

Assignments (4)
RELEASE OF SECURITY INTEREST Recorded May 16, 2024
From: STIFEL BANK
To: ZEROFOX, INC.
Reel/Frame 067429/0328 →
SECURITY INTEREST Recorded May 13, 2024
From: ZEROFOX, INC.; LOOKINGGLASS CYBER SOLUTIONS, LLC; IDENTITY THEFT GUARD SOLUTIONS, INC.
To: MONROE CAPITAL MANAGEMENT ADVISORS, LLC
Reel/Frame 067396/0304 →
SECURITY INTEREST Recorded Jun 16, 2023
From: ZEROFOX, INC.
To: STIFEL BANK
Reel/Frame 063976/0113 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 26, 2022
From: SUMPTER, JASON EMILE; FOSTER, JAMES CHRISTOPHER; PRICE, MICHAEL MORGAN
To: ZEROFOX, INC.
Reel/Frame 061544/0204 →