IP Library › Granted Patent US 12,744,821
Granted Patent B2
US 12,744,821 · App. 18/890,559 · Granted Sep 22, 2026

Systems, methods, and devices for environment and network control

Inventors: Timothy Pitts (Clinton, MS); Gary Mccrorey (Clinton, MS)
Assignee: Next Step Group, Inc.
H04L63/20H04L41/085H04L41/0866
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,744,821
App. No.
18/890,559
Granted
Sep 22, 2026
Kind
B2
Abstract

Embodiments of the presently disclosed subject matter relate to systems, methods, and devices for asset control and management systems. According to some embodiments, an asset control and management system can comprise a network comprising a network memory; and a host computer connected to the network, the host computer comprising a non-transitory computer-readable medium comprising instructions executable by a processor to: operate a management program configured to access a checklist; determine a difference between an asset status and the checklist; receive from a network database associated with the network memory an executable program associated with a response; and implement the response to change the asset to match the checklist.

Claims (45)

1 . An asset control and management system comprising:

a network comprising a network memory and a network server with access to the network memory; and

a host computer connected to the network, the host computer comprising a non-transitory computer-readable medium comprising instructions executable by at least one processor to:

operate, after authentication of an asset, a management program associated with a web-application accessible through a web browser configured to access a checklist stored in the network memory, wherein the asset is a computer connected to the network;

determine a status of the asset, wherein the status includes one or more of a current protocol, a setting, and a configuration of the asset;

determine a difference between the status and the checklist;

receive, from a network database associated with the network memory, an executable program associated with a response, the executable program comprising a script that includes command-line executables for configuration changes along with a reg file to update a registry, wherein the registry includes Group Policy updates; and

implement the response within the asset by exporting the script to the asset, adjusting a configuration setting associated with the difference by executing the script on the asset through a remote connection with the asset, and set the status associated with the asset after the response is implemented.

2 . The asset control and management system of claim 1 , wherein the script is executed on the asset through the remote connection with the asset to change one or more of the configuration, the setting, and the current protocol, the one or more of the configuration, the setting, and the current protocol being associated with a vulnerability determined based on the difference.

3 . The asset control and management system of claim 1 , wherein the management program is configured to communicate, through an application programming interface, with a backend service executed by the network that transmits the response to the asset, causes execution of the executable program on the asset to adjust the setting associated with the difference, receives execution-status data from the asset indicating whether the setting was changed, and displays, via a graphical user interface viewable on a display connected to the network, the execution-status data.

4 . The asset control and management system of claim 3 , wherein the graphical user interface is configured to report an update to the response associated with a compliance event by storing, in a database, a finding's status, details, or comments that have been edited and tracking when an object is created or updated, wherein the graphical user interface is configured to report the update to the response associated with the compliance event by causing the backend to set a previous finding property to false, create a new finding with updated edited details, set a property of the new finding to true, and store results in the database.

5 . The asset control and management system of claim 3 , wherein the graphical user interface is configured to display a determined status of each asset or system connected to the network including one or more of a hostname, an internet protocol (“IP”) address, a media access control (“MAC”) address, a full computer name, a group designation, an asset type, and a role, and wherein the graphical user interface is configured to search and/or filter based on the hostname, the IP address, the group designation, the asset type, the role, or a security technical implementation guide (“STIG”).

6 . The asset control and management system of claim 1 , wherein the instructions further comprise generating a proposed response including identifying a remedial executable program based on the status of the asset compared to the checklist, wherein generating the proposed response includes creating a script to address the difference to change a configuration setting to match a rule, wherein a graphical user interface is configured to display the proposed response including rule content and fix text including computer code or source code to be implemented or parameters to be input into an executable code or program, and a result of a compliance event associated with the executable program.

7 . The asset control and management system of claim 1 , wherein the executable program is configured to change a number of protocols or settings associated with the asset connected to the network by grouping one or more assets based on similarities or the status, retrieving selected or grouped asset identification, looping through each of a plurality of selected or grouped asset identifications to create a new finding with the selected or grouped asset identification and updated finding data, and updating a group property of the one or more assets in a database.

8 . The asset control and management system of claim 1 , wherein the instruction to operate the management program is responsive to an update to the checklist by comparing a previous STIG to a new STIG, differentiating the previous STIG and the new STIG by titles, a date associated with the previous STIG, or a content of the previous STIG, creating findings with a status for each vulnerability in the new STIG of each asset, executing a script to change a configuration setting to match a rule, re-running a STIG analysis tool to ensure the configuration setting is changed and satisfies the rule, and rebooting the asset.

9 . A computer-implemented method for asset control and management, the method comprising:

authenticating, by a network server, a user to access a web-application associated with an asset control and management system;

accessing, by the network server, a checklist stored in a network memory;

determining, by the network server, a status of an asset connected to a network, wherein the status includes current protocols, settings, or configurations of the asset;

determining, by the network server, a difference between the status of the asset and the checklist;

receiving, from a network database associated with the network memory, a script that includes command-line executables for configuration changes and a registry update file configured to update a registry of the asset, wherein the registry includes Group Policy updates;

exporting, by the network server, the script to the asset;

executing, by a backend executed by the network through a remote connection with the asset, the script on the asset to adjust a configuration setting associated with the difference; and

setting, by the network server, an updated status associated with the asset after the script is executed.

10 . The computer-implemented method of claim 9 , further comprising generating, by the network server, a proposed response including identifying a remedial executable program based on the status of the asset compared to the checklist.

11 . The computer-implemented method of claim 9 , further comprising sending data to and receiving the data from a graphical user interface by application programming interface instructions, wherein the graphical user interface displays a result of a compliance event associated with execution of the script.

12 . The computer-implemented method of claim 9 , further comprising grouping a plurality of assets based on similarities or the status and implementing the script for the plurality of assets.

13 . The computer-implemented method of claim 9 , further comprising re-running a STIG analysis tool after executing the script to verify that the setting associated with the difference was changed and satisfies a rule of the checklist.

14 . The computer-implemented method of claim 9 , further comprising displaying, by a graphical user interface, fix text that includes computer code or source code to be implemented or parameters to be input into an executable code or program.

15 . A non-transitory computer-readable medium comprising:

a processor of a network server in a network; and

instructions executable by the processor to:

authenticate a user to access a web-application;

access a database with one or more checklists;

determine a status of one or more assets, wherein the status includes a host computer protocol, settings, or configurations of the one or more assets;

determine a difference between the status and the one or more checklists;

receive a script that includes command-line executables for configuration changes along with a .reg file to update a registry, wherein the registry includes Group Policy updates;

export the script to an asset comprising a computer connected to the network;

execute the script on the asset by a backend executed by the network through a remote connection with the asset to change a configuration setting associated with the difference, and

re-run a STIG analysis tool to ensure the host computer protocol, a configuration setting is changed and satisfies the one or more checklists.

16 . The non-transitory computer-readable medium of claim 15 , wherein the instructions further comprise retrieving one or more STIGs based on the asset or retrieving a list of assets based on a STIG.

17 . The non-transitory computer-readable medium of claim 15 , wherein the instructions further comprise creating an asset group object in a database and updating a group property of assets selected to be part of the asset group object.

18 . The non-transitory computer-readable medium of claim 17 , wherein the instructions further comprise extracting vulnerability and findings data from a raw checklist file and creating new findings based on an extracted status, comments, details, and/or vulnerabilities of the one or more checklists.

19 . The non-transitory computer-readable medium of claim 17 , wherein the instructions further comprise generating the script that includes the command-line executables for the configuration changes along with the .reg file to update the registry.

20 . The non-transitory computer-readable medium of claim 15 , wherein the instructions further comprise causing a graphical user interface to display fix text that includes computer code or source code to be implemented or parameters to be input into an executable code or program and a result of a compliance event associated with the script.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 23, 2026
From: PITTS, TIMOTHY; MCCROREY, GARY
To: NEXT STEP GROUP, INC. DOING BUSINESS AS (D.B.A) NEXT STEP INNOVATION
Reel/Frame 075375/0088 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 23, 2026
From: PITTS, TIMOTHY; MCCROREY, GARY
To: NEXT STEP GROUP, INC. DOING BUSINESS AS (D.B.A) NEXT STEP INNOVATION
Reel/Frame 075374/0302 →
Continuity (2)
Provisional Application 63583683 · Sep 19, 2023
Related Publication 20250097270A1 · Mar 20, 2025
References Cited (8)
US 12206700B1 · Miseiko · 2025 [cited by examiner]
US 20040204949A1 · Shaji · 2004 [cited by examiner]
US 20180091558A1 · Daugherty · 2018 [cited by examiner]
US 20200220902A1 · Schlotman, Jr. · 2020 [cited by examiner]
US 20210141648A1 · Halim · 2021 [cited by examiner]
US 20210194929A1 · Garrett · 2021 [cited by examiner]
US 20250097270A1 · Pitts · 2025 [cited by examiner]
Souppaya et al. NIST Special Publication 800-68 (Year: 2005). [cited by examiner]