IP Library › Granted Patent US 12,393,901
Granted Patent B2
US 12,393,901 · App. 17/219,363 · Granted Aug 19, 2025

Interface security in business applications

Inventor: Oleksandr Panchenko (Heidelberg, DE)
Assignee: Onapsis Inc.
G06Q10/0635H04L41/22H04L63/1425H04L63/1433
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,393,901
App. No.
17/219,363
Filed
Mar 31, 2021
Granted
Aug 19, 2025
Kind
B2
Art Unit
2435
USPC
726/25
Abstract

Security can be improved in a business application landscape, such as an enterprise resource planning (“ERP”) system, by analyzing interfaces between systems of the application. The interface profiler may automatically analyze data flows in the system landscape with automatic data classification of communications between systems. A rule generation engine provides functionality for comparing reference data flows with the actual data flows in the landscape and report violations. There may be visualization of the business application landscape, such as through a system landscape map.

Claims (22)

1. In a business application, a computer system for monitoring interfaces for an interconnected risk, comprising:

a first system;

a second system;

an interface between the first system and the second system; and

an interconnected risk interface profiler configured to:

collect data related to communications through the interface between the first system and the second system;

analyze the collected data and code for the interface, wherein to analyze the collected data, the interconnected risk interface is configured to:

automatically identify a type of data of one or more portions of the collected data; and

at least one of automatically categorize or classify the one or more portions of the collected data based at least in part on the identified type of data of the one or more portions of collected data; and

display a system landscape map visualizing communication paths between the first system and the second system, and visualizing vulnerabilities identified based on the analysis of the collected data and the code for the interface.

2. The computer system of claim 1 , wherein the business application comprises a software application.

3. The computer system of claim 2 , wherein the software application comprises at least one of Customer Relationship Management (CRM), Supplier Relationship Management (SRM), Supply Chain Management (SCM), Product Life-cycle Management (PLM), Human Capital Management (HCM), Integration Platforms, Business Warehouse (BW), Business Intelligence (BI), or enterprise resource planning (ERP).

4. The computer system of claim 2 , wherein the software application comprises at least one of SAP software, Oracle software, Microsoft software, Siebel software, JD Edwards software, Salesforce, Workday, Netsuite, or PeopleSoft software.

5. The computer system of claim 1 , wherein the vulnerabilities identified comprise interconnected risks over the interface with the communication paths that are visualized.

6. The computer system of claim 1 , wherein the communications through the interface are over a network.

7. The computer system of claim 1 , wherein the collected data and code for the interface is analyzed automatically.

8. A method for monitoring interfaces for an interconnected risk, comprising:

collecting, with an interconnected risk interface profiler, data related to communications through an interface between a first system and a second system;

analyzing, with the interconnected risk interface profiler, the collected data and code for the interface, wherein analyzing the collected data comprises:

automatically identifying a type of data of one or more portions of the collected data; and

at least one of automatically categorizing or classifying the one or more portions of the collected data based at least in part on the identified type of data of the one or more portions of collected data; and

displaying, with the interconnected risk interface profiler, a system landscape map visualizing communication paths between the first system and the second system, and visualizing vulnerabilities identified based on the analysis of the collected data and the code for the interface.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 28, 2021
From: PANCHENKO, OLEKSANDR
To: ONAPSIS INC.
Reel/Frame 057945/0149 →
Continuity (2)
Provisional Application 63002778 · Mar 31, 2020
Related Publication 20210306370A1 · Sep 30, 2021
References Cited (10)
US 11563764B1 · Hoscheit · 2023 [cited by examiner]
US 20120017280A1 · Wiegenstein · 2012 [cited by examiner]
US 20150101056A1 · Eberlein · 2015 [cited by examiner]
US 20150319185A1 · Kirti · 2015 [cited by examiner]
US 20160154962A1 · Nuñez Di Croce · 2016 [cited by examiner]
US 20170180403A1 · Mehta · 2017 [cited by examiner]
US 20170288974A1 · Yoshihira · 2017 [cited by examiner]
US 20180309789A1 · Johnson · 2018 [cited by examiner]
US 20180324219A1 · Xie · 2018 [cited by examiner]
US 20220131894A1 · Hassanzadeh · 2022 [cited by examiner]