IP Library Granted Patent US 11,416,607
Granted Patent B2
US 11,416,607 · App. 16/673,403 · Granted Aug 16, 2022

Security risk indicator and method therefor

Inventors: Greg Havenga (Lakeway, TX); Ruhull Bhuiyan (Austin, TX); Carl McAdams (Round Rock, TX); Ibrahim Sayyed (Georgetown, TX); Allen Wynn (Round Rock, TX); Joshua Alperin (Round Rock, TX)
Assignee: Dell Products L.P.
G06F21/554G06F3/04847G06F21/572G06F21/575
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,416,607
App. No.
16/673,403
Granted
Aug 16, 2022
Kind
B2
Abstract

A method may include determining a configuration of one or more basic input/output system (BIOS) settings identified as influencing security at an information handling system. The method may further include determining a security risk score based on the configuration, and generating a security gauge image that provides a visual indication of the security risk score. The security gauge image may be displayed during BIOS initialization at the information handling system.

Claims (54)

1. An information handling system comprising:

a display device; and

a basic input/output system (BIOS) configured to:

determine a configuration of one or more activated BIOS settings identified as influencing security at the information handling system;

determine a security risk score based on the configuration of the one or more activated BIOS settings according to at least one recent event at an event log;

generate a security gauge image providing a visual indication of the security risk score;

display the security gauge image at the display device during BIOS initialization at the information handling system, wherein the security gauge image allows for user interaction;

determine whether a user interacted with the security gauge image displayed during BIOS initialization;

in response to a determination that the user interacted with the security gauge image, provide an interface to update a value of the configuration of the one or more activated BIOS settings;

determine whether the user updated the value of the configuration of the one or more activated BIOS settings via the interface; and

in response to another determination that the user updated the configuration of the one or more activated BIOS settings, reboot the information handling system, wherein a revised security gauge image is generated and displayed based on a revised security risk score.

2. The information handling system of claim 1 , wherein the BIOS is further to:

receive the event log identifying system events identified as influencing security at the information handling system; and

determine the security risk score further based on the system events.

3. The information handling system of claim 1 , wherein determining the security risk score further comprises identifying a threat priority associated with the configuration of each of the one or more activated BIOS settings.

4. The information handling system of claim 1 , wherein the BIOS is further configured to:

display information identifying the configuration of the one or more activated BIOS settings contributing to the security risk score.

5. The information handling system of claim 1 , wherein

the security risk score is based on the value of the configuration of the one or more activated BIOS settings.

6. The information handling system of claim 1 , wherein a first setting of the one or more activated BIOS settings comprises a configuration of a trusted platform module.

7. The information handling system of claim 1 , wherein a first setting of the one or more activated BIOS settings comprises a configuration of a Secure Boot protocol.

8. The information handling system of claim 1 , wherein a first setting of the one or more activated BIOS settings comprises a configuration of a removable storage device.

9. The information handling system of claim 1 , wherein a first setting of the one or more activated BIOS settings comprises a prior or pending BIOS image update event.

10. The information handling system of claim 1 , wherein the security gauge image is displayed at a driver execution phase.

11. The information handling system of claim 1 , wherein the BIOS is further configured to transmit an alert to a remote administration service in response to determining that a threat level indicated by the security risk score exceeds a predetermined threshold.

12. A method comprising:

determining a configuration of one or more basic input/output system (BIOS) settings identified as influencing security at an information handling system;

determining a security risk score based on the configuration of the one or more activated BIOS settings according to at least one recent event an an event log;

generating a security gauge image providing a visual indication of the security risk score;

displaying the security gauge image at a display device during BIOS initialization of the information handling system, wherein the security gauge image allows for user interaction;

determining whether a user interacted with the security gauge image displayed during BIOS initialization;

in response to determining that the user interacted with the security gauge image, providing an interface to update a value of the configuration of the one or more activated BIOS settings;

determining whether the user updated the value of the configuration of the one or more activated BIOS settings via the interface; and

in response to determining that the user updated the configuration of the one or more activated BIOS settings, rebooting the information handling system, wherein a revised security gauge image is generated and displayed based on a revised security risk score.

13. The method of claim 12 , further comprising:

receiving the event log identifying system events identified as influencing security at the information handling system; and

determining the security risk score further based on the system events.

14. The method of claim 12 , wherein determining the security risk score further comprises identifying a threat priority associated with the configuration of each of the one or more activated BIOS settings.

15. The method of claim 12 ,

wherein the interface includes information identifying the configuration of the one or more activated BIOS settings contributing to the security risk score.

16. The method of claim 12 ,

wherein the security risk score is based on the value of the configuration of the one or more activated BIOS settings.

17. The method of claim 12 , wherein a first setting of the one or more activated BIOS settings comprises a configuration of a trusted platform module.

18. The method of claim 12 , wherein a first setting of the one or more activated BIOS settings comprises a configuration of a Secure Boot protocol.

19. The method of claim 12 , further comprising transmitting an alert to a remote administration service in response to determining that a threat level indicated by the security risk score exceeds a predetermined threshold.

20. A method comprising:

determining a configuration of one or more basic input/output system (BIOS) settings identified as influencing security at an information handling system;

determining a security risk score based on the configuration of the one or more activated BIOS settings according to a recent event in an event log;

generating a security gauge image providing a visual indication of the security risk score;

displaying the security gauge image during BIOS initialization at the information handling system, wherein the security gauge image allows for user interaction;

determining whether a user interacted with the security gauge image displayed during BIOS initialization;

in response to the determining that the user interacted with the security gauge image, display an interface to update a value of the configuration of the one or more activated BIOS settings contributing to the security risk score;

determining whether the user updated the value of the configuration of the one or more activated BIOS settings via the interface; and

in response to the determining that the user updated the configuration of the one or more activated BIOS settings, rebooting the information handling system, wherein a revised security gauge image is generated and displayed based on a revised security risk score.

Assignments (9)
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053311/0169) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
Reel/Frame 060438/0742 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053546/0001) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC IP HOLDING COMPANY LLC
Reel/Frame 071642/0001 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (052216/0758) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 060438/0680 →
RELEASE OF SECURITY INTEREST AF REEL 052243 FRAME 0773 Recorded Nov 2, 2021
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 058001/0152 →
SECURITY INTEREST Recorded Jun 5, 2020
From: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 053311/0169 →
SECURITY AGREEMENT Recorded Apr 22, 2020
From: CREDANT TECHNOLOGIES INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 053546/0001 →
SECURITY AGREEMENT Recorded Mar 26, 2020
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
Reel/Frame 052243/0773 →
PATENT SECURITY AGREEMENT (NOTES) Recorded Mar 24, 2020
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 052216/0758 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 4, 2019
From: HAVENGA, GREG; BHUIYAN, RUHULL; MCADAMS, CARL; SAYYED, IBRAHIM; WYNN, ALLEN; ALPERIN, JOSHUA
To: DELL PRODUCTS, LP
Reel/Frame 050908/0966 →