IP Library Granted Patent US 12,294,589
Granted Patent B2
US 12,294,589 · App. 17/527,466 · Granted May 6, 2025

Cloud-platform push for known data breaches

Inventors: Supreeth Hosur Nagesh Rao (Cupertino, CA); Navindra Yadav (Cupertino, CA); Ravi Sankuratri (Cupertino, CA); Alok Lalit Wadhwa (Milipitas, CA); Aria Rahadian (San Jose, CA); Bharathwaj Sankara Viswanathan (Mountain View, CA); Brady Schulman (Milford, CA); Matthew Finn (Lebanon, GA); Paul John Lesiak (West Orange, NJ); Ravi Shanker Prasad (Fremont, CA); Vasil Dochkov Yordanov (San Jose, CA); Yiwei Wang (San Jose, CA); Zhiwen Zhang (San Jose, CA); Udayan Joshi (San Diego, CA); Soumyadeep Choudhury (San Jose, CA); Muhammada Furqan (Lowell, MA); Manish Arigala (San Jose, CA)
H04L63/1416G06F9/541G06F16/2379G06F21/577G06F21/604G06F21/6245H04L63/0209H04L63/1425H04L63/1466H04L63/20G06F2221/034
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,294,589
App. No.
17/527,466
Filed
Nov 16, 2021
Granted
May 6, 2025
Kind
B2
Art Unit
2442
USPC
726/22
Abstract

In one aspect, a method for implementing a cloud-platform push for one or more known data breaches includes the step of, for each data breach of the one or more known data breaches, providing a functionality that maps one or more kill chains or Tactics, Techniques, and Procedures (TTPs) for a specified set of security dimensions. A step includes generating a security rule for each mapped kill chain or TTP based on the functionality that maps the one or more kill chains or Tactics, Techniques, and Procedures (TTPs) for a specified set of security dimensions. A step includes pushing the security rule to an enterprise so that the enterprise is aware of a vulnerability in the data breach. A step includes generating a customized posture for a Virtual private cloud (VPC) in the enterprise's cloud-based network. A step includes determining that the data breach can occur within the enterprise's cloud-based network.

Claims (19)

1. A method for implementing a cloud-platform push for one or more known data breaches comprising:

for each data breach of the one or more known data breaches:

providing a functionality that maps one or more kill chains or Tactics, Techniques, and Procedures (TTPs) for a specified set of security dimensions;

generating a security rule for each mapped kill chain or TTP based on the functionality that maps the one or more kill chains or Tactics, Techniques, and Procedures (TTPs) for a specified set of security dimensions;

pushing the security rule to an enterprise so that the enterprise is aware of a vulnerability to the data breach;

generating a customized posture for a Virtual private cloud (VPC) in the enterprise's cloud-based network; and

determining that the data breach can occur within the enterprise's cloud-based network,

wherein the TTPs comprises a cyber-threat behavior, a cyber-threat method, a cyber-threat tool, and a cyber-threat strategy,

wherein the TTPs execute a computer-system security threat on a specified network;

mapping a disclosed data breach to the TTPs represented through a set of security vectors; and

using the functionality to map one or more kill chains or Tactics, Techniques, and Procedures (TTPs) for a specified set of security dimensions to determine a vulnerability rating for an enterprise against a known data breach which indicates if the enterprise is susceptible to the same data breach,

computing a plurality of security vectors for every enterprise which helps map the enterprise's cloud data store posture and characteristics and with the security vectors and security rule, representing the TTPs for a plurality of known cloud data breaches;

and once the TTPs are mapped, protecting the enterprise, for any new known cloud data breach by providing a vulnerability rating which indicates a chance that an enterprise has a same posture which leads to the cloud data breach.

2. A method for a cloud-platform push process for one or more known data breach comprising:

for any known data breach, with an NLP engine:

identifying and mapping a kill chain to a multidimensional security policy;

through a Software as a Service (Saas) based push, periodically program a set of rules for alerting on an enterprise's cloud-based networks; and

pushing the set of rules to each enterprise customer so that each enterprise customer is aware of and can validate a vulnerability in the same type of breach as the known data breach,

wherein the enterprise customer obtains a posture report about a cloud-platform infrastructure of the enterprise customer, wherein the enterprise customer obtains a posture report about a vendor data sharing operation for the enterprise customer, wherein the posture report is based on a known disclosure of one or more data breaches through generating and propagating an alert.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 18, 2025
From: RAO, SUPREETH HOSUR NAGESH; SANKURATRI, RAVI; YADAV, NAVINDRA; WADHWA, ALOK LALIT; RAHADIAN, ARIA; VISWANATHAN, BHARATHWAJ SANKARA; SCHULMAN, BRADY; FINN, MATTHEW; YORDANOV, VASIL DOCHKOV; WANG, YIWEI; ZHANG, ZHIWEN; PRASAD, RAVI SHANKER; LESIAK, PAUL JOHN; JOSHI, UDAYAN; CHOUDHURY, SOUMYADEEP; FURQAN, MUHAMMADA; ARIGALA, MANISH
To: THEOM, INC.
Reel/Frame 071761/0240 →
Continuity (2)
Provisional Application 63153362 · Feb 24, 2021
Related Publication 20220272111A1 · Aug 25, 2022
References Cited (14)
US 11399041B1 · Kannan · 2022 [cited by examiner]
US 11470047B1 · Shevade · 2022 [cited by examiner]
US 20180278648A1 · Li · 2018 [cited by examiner]
US 20200314141A1 · Vajipayajula · 2020 [cited by examiner]
US 20200382525A1 · Scheideler · 2020 [cited by examiner]
US 20210029156A1 · Sharifi Mehr · 2021 [cited by examiner]
US 20220046059A1 · Pandurangi · 2022 [cited by examiner]
US 20220070279A1 · Pang · 2022 [cited by examiner]
Tounsi, Wiem, and Helmi Rais. “A survey on technical threat intelligence in the age of sophisticated cyber attacks.” Computers & security 72: 212-233. (Year: 2018). [cited by examiner]
Kaloudi, Nektaria, and Jingyue Li. “The ai-based cyber threat landscape: A survey.” ACM Computing Surveys (CSUR) 53.1: 1-34. (Year: 2020). [cited by examiner]
Tarnowski, Ireneusz. “How to use cyber kill chain model to build cybersecurity?.” European Journal of Higher Education IT. (Year: 2017). [cited by examiner]
Mohsin, Mujahid, and Zahid Anwar. “Where to kill the cyber kill-chain: An ontology-driven framework for iot security analytics.” 2016 International Conference on Frontiers of Information Technology (FIT). IEEE. (Year: 2… [cited by examiner]
Ya et al. English translation of CN_109194605_A_I. (Year: 2019). [cited by examiner]
Vlaznev et al. English translation of RU_2628923_C1_I. (Year: 2017). [cited by examiner]
Cited By (1)
US 12,457,244