IP Library Granted Patent US 12,401,683
Granted Patent B1
US 12,401,683 · App. 18/647,876 · Granted Aug 26, 2025

Techniques for detecting artificial intelligence model cybersecurity risk in a computing environment

Inventors: Amitai Cohen (Kfar Saba, IL); Barak Sharoni (Tel Aviv, IL); Shir Tamari (Tel Aviv, IL); George Pisha (Giv'atayim, IL); Itay Arbel (Tel Aviv, IL); Daniel Velikanski (Tel Aviv, IL); Yaniv Shaked (Tel Aviv, IL)
Assignee: Wiz, Inc.
H04L63/1441H04L63/1433
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,401,683
App. No.
18/647,876
Granted
Aug 26, 2025
Kind
B1
Abstract

A system and method for detecting a cybersecurity risk of an artificial intelligence (AI), is presented. The method includes: inspecting a computing environment for an AI model deployed therein; generating a representation of the AI model in a security database, the security database including a representation of the computing environment; inspecting the AI model for a cybersecurity risk; generating a representation of the cybersecurity risk in the security database, the representation of the cybersecurity risk connected to the representation of the AI model in response to detecting the cybersecurity risk; and initiating a mitigation action based on the cybersecurity risk.

Claims (55)

1. A method for detecting a cybersecurity risk of an artificial intelligence (AI), comprising:

inspecting a resource in a computing environment for an AI model deployed therein;

cloning an original disk of the resource deployed in the computing environment into a cloned disk;

inspecting the cloned disk for the AI model;

generating a representation of the AI model in a security database, the security database including a representation of the computing environment;

inspecting the AI model for a cybersecurity object, the cybersecurity object indicating a cybersecurity issue;

generating a representation of the cybersecurity object in the security database, the representation of the cybersecurity object connected to the representation of the AI model in response to detecting the cybersecurity object; and

initiating a mitigation action based on the cybersecurity issue.

2. The method of claim 1 , further comprising:

detecting an artifact of the AI model on the cloned disk.

3. The method of claim 1 , further comprising:

inspecting the AI model for an executable code object.

4. The method of claim 1 , further comprising:

detecting a metadata of the AI model, wherein the metadata indicates that the AI model includes a cybersecurity issue.

5. The method of claim 1 , further comprising:

detecting in the AI model any one of: a secret, a certificate, an executable code, and any combination thereof.

6. The method of claim 1 , further comprising:

generating a lateral movement path, wherein the lateral movement path includes the AI model, and a representation of another resource, wherein the another resource is accessible utilizing the AI model.

7. The method of claim 1 , further comprising:

applying a policy on the representation of the computing environment.

8. The method of claim 7 , further comprising:

initiating the mitigation action based on the policy.

9. A non-transitory computer-readable medium storing a set of instructions for detecting a cybersecurity risk of an artificial intelligence (AI), the set of instructions comprising:

one or more instructions that, when executed by one or more processors of a device, cause the device to:

inspect a resource in a computing environment for an AI model deployed therein;

clone an original disk of the resource deployed in the computing environment into a cloned disk;

inspect the cloned disk for the AI model;

generate a representation of the AI model in a security database, the security database including a representation of the computing environment;

inspect the AI model for a cybersecurity object, the cybersecurity object indicating a cybersecurity issue;

generate a representation of the cybersecurity object in the security database, the representation of the cybersecurity object connected to the representation of the AI model in response to detecting the cybersecurity object; and

initiate a mitigation action based on the cybersecurity issue.

10. A system for detecting a cybersecurity risk of an artificial intelligence (AI) comprising:

a processing circuitry;

a memory, the memory containing instructions that, when executed by the processing circuitry, configure the system to:

inspect a resource in a computing environment for an AI model deployed therein;

clone an original disk of the resource deployed in the computing environment into a cloned disk;

inspect the cloned disk for the AI model;

generate a representation of the AI model in a security database, the security database including a representation of the computing environment;

inspect the AI model for a cybersecurity object, the cybersecurity object indicating a cybersecurity issue;

generate a representation of the cybersecurity object in the security database, the representation of the cybersecurity object connected to the representation of the AI model in response to detecting the cybersecurity object; and

initiate a mitigation action based on the cybersecurity issue.

11. The system of claim 10 , wherein the memory contains further instructions which when executed by the processing circuitry further configure the system to:

detect an artifact of the AI model on the cloned disk.

12. The system of claim 10 , wherein the memory contains further instructions which when executed by the processing circuitry further configure the system to:

inspect the AI model for an executable code object.

13. The system of claim 10 , wherein the memory contains further instructions which when executed by the processing circuitry further configure the system to:

detect a metadata of the AI model, wherein the metadata indicates that the AI model includes a cybersecurity issue.

14. The system of claim 10 , wherein the memory contains further instructions which when executed by the processing circuitry further configure the system to:

detect in the AI model any one of: a secret, a certificate, an executable code, and any combination thereof.

15. The system of claim 10 , wherein the memory contains further instructions which when executed by the processing circuitry further configure the system to:

generate a lateral movement path, wherein the lateral movement path includes the AI model, and a representation of another resource, wherein the another resource is accessible utilizing the AI model.

16. The system of claim 10 , wherein the memory contains further instructions which when executed by the processing circuitry further configure the system to:

apply a policy on the representation of the computing environment.

17. The system of claim 16 , wherein the memory contains further instructions which when executed by the processing circuitry further configure the system to:

initiate the mitigation action based on the policy.

Continuity (1)
Continuation 18584659 · Feb 22, 2024
References Cited (70)
US 10558823B2 · Schroeder et al. · 2020 [cited by applicant]
US 11489863B1 · Shua · 2022 [cited by applicant]
US 11875306B1 · Shalev et al. · 2024 [cited by applicant]
US 11886610B1 · Agrawal et al. · 2024 [cited by applicant]
US 11895121B1 · Karim et al. · 2024 [cited by applicant]
US 11935416B1 · Motamedi et al. · 2024 [cited by applicant]
US 11936622B1 · Gonshorowitz et al. · 2024 [cited by applicant]
US 11936785B1 · Shemesh et al. · 2024 [cited by applicant]
US 11941054B2 · Shu et al. · 2024 [cited by applicant]
US 11947698B2 · Struttmann · 2024 [cited by applicant]
US 11949690B2 · Lichtenstein et al. · 2024 [cited by applicant]
US 20190050683A1 · Gupta Hyde · 2019 [cited by examiner]
US 20210029108A1 · Obando Chacon · 2021 [cited by examiner]
US 20210258160A1 · Kannan · 2021 [cited by examiner]
US 20220030009A1 · Hasan · 2022 [cited by applicant]
US 20220345457A1 · Jeffords · 2022 [cited by examiner]
US 20230094856A1 · Ithal et al. · 2023 [cited by applicant]
US 20230120915A1 · Scott et al. · 2023 [cited by applicant]
US 20230269272A1 · Dambrot · 2023 [cited by examiner]
US 20230289604A1 · Chan et al. · 2023 [cited by applicant]
US 20230351026A1 · Cross et al. · 2023 [cited by applicant]
US 20230388278A1 · Crabtree · 2023 [cited by examiner]
US 20230396635A1 · Hebbagodi · 2023 [cited by examiner]
US 20230412620A1 · Crabtree · 2023 [cited by examiner]
US 20230412626A1 · Wright · 2023 [cited by examiner]
US 20230412630A1 · Revankar · 2023 [cited by examiner]
US 20230412631A1 · Revankar · 2023 [cited by examiner]
US 20230412635A1 · Binyamini · 2023 [cited by examiner]
US 20230421573A1 · Lichtenstein · 2023 [cited by examiner]
US 20230421588A1 · Marett · 2023 [cited by examiner]
US 20230421593A1 · Crabtree · 2023 [cited by examiner]
US 20240015185A1 · Cross · 2024 [cited by examiner]
US 20240022609A1 · Smith et al. · 2024 [cited by applicant]
US 20240031376A1 · Lichtenstein et al. · 2024 [cited by applicant]
US 20240031391A1 · Baikalov et al. · 2024 [cited by applicant]
US 20240037218A1 · Shemesh et al. · 2024 [cited by applicant]
US 20240037463A1 · Ryali et al. · 2024 [cited by applicant]
US 20240039929A1 · Pisha et al. · 2024 [cited by applicant]
US 20240039936A1 · Pisha et al. · 2024 [cited by applicant]
US 20240039954A1 · Shete et al. · 2024 [cited by applicant]
US 20240048566A1 · Lichtenstein · 2024 [cited by examiner]
US 20240054228A1 · Lidgi · 2024 [cited by examiner]
US 20240054229A1 · Lidgi · 2024 [cited by examiner]
US 20240056460A1 · Yadav · 2024 [cited by examiner]
US 20240064159A1 · Crabtree et al. · 2024 [cited by applicant]
US 20240080329A1 · Reed et al. · 2024 [cited by applicant]
US 20240080338A1 · Crabtree et al. · 2024 [cited by applicant]
US 20240089272A1 · Gilad et al. · 2024 [cited by applicant]
US 20240098072A1 · Verzun et al. · 2024 [cited by applicant]
US 20240104118A1 · Herzberg et al. · 2024 [cited by applicant]
US 20240104235A1 · Herzberg et al. · 2024 [cited by applicant]
US 20240104240A1 · Herzberg et al. · 2024 [cited by applicant]
US 20240106846A1 · Kapoor et al. · 2024 [cited by applicant]
US 20240106847A1 · Yadav et al. · 2024 [cited by applicant]
US 20240202405A1 · Lang et al. · 2024 [cited by applicant]
US 20240223596A1 · Sellars · 2024 [cited by examiner]
US 20240356895A1 · Kaligotla · 2024 [cited by examiner]
U.S. Appl. No. 63/180,048, dated Jan. 31, 2023, Shua. [cited by applicant]
“About Archive and Standard Disk Snapshots.” Google Cloud, https://cloud.google.com/compute/docs/disks/snapshots. Accessed Jun. 9, 2025. [cited by applicant]
“How to Use Graph Database for Cybersecurity.” Nebula-Graph.Io, https://www.nebula-graph.io/posts/how-to-use-graphs-for-cybersecurity. Accessed Jun. 9, 2025. [cited by applicant]
“What Is Cloud Security?” Ibm.com, Aug. 11, 2021, https://www.ibm.com/think/topics/cloud-security. [cited by applicant]
“What Is Machine Learning (ML)?” Ibm.com, Jun. 4, 2025, https://www.ibm.com/think/topics/machine-learning. [cited by applicant]
Mell, Peter, and Timothy Grace. “The NIST Definition of Cloud Computing.” National Institute of Stand, vol. 800-145, Sep. 2011, pp. 1-3. [cited by applicant]
NIST Cloud Computing Standards Roadmap Working Group. NIST Cloud Computing Standards Roadmap. National Institute of Standards and Technology, 2013. [cited by applicant]
[cited by applicant]
Pytorch: Tensors and Dynamic Neural Networks in Python with Strong GPU Acceleration. Accessed Jun. 9, 2025. [cited by applicant]
Stryker, Cole, and Eda Kavlakoglu. “What Is Artificial Intelligence (AI)?” Ibm.com, Aug. 9, 2024, https://www.ibm.com/think/topics/artificial-intelligence. [cited by applicant]
Tabassi, Elham. Artificial Intelligence Risk Management Framework (AI RMF 1.0): AI RMF (1.0). National Institute of Standards and Technology (U.S.), 2023. [cited by applicant]
Understanding Cloud Computing Basics (https://online.eou.edu/resources/article/understanding-cloudcomputing-basics/), retrieved May 29, 2025. [cited by applicant]
Waltermire, David, and Karen Scarfone. “Guide to Using Vulnerability Naming Schemes.” National Institute of Standards, vol. 800-51, Feb. 2011, pp. 1-B1. [cited by applicant]