17641211. ANALYSIS SYSTEM, METHOD, AND PROGRAM simplified abstract (NEC Corporation)

From WikiPatents
Jump to navigation Jump to search

ANALYSIS SYSTEM, METHOD, AND PROGRAM

Organization Name

NEC Corporation

Inventor(s)

Hirofumi Ueda of Tokyo (JP)

Yoshinobu Ohta of Tokyo (JP)

Tomohiko Yagyu of Tokyo (JP)

Norio Yamagaki of Tokyo (JP)

ANALYSIS SYSTEM, METHOD, AND PROGRAM - A simplified explanation of the abstract

This abstract first appeared for US patent application 17641211 titled 'ANALYSIS SYSTEM, METHOD, AND PROGRAM

Simplified Explanation

The patent application describes an analysis system for security administrators to understand the impact of known vulnerabilities on a system to be diagnosed.

  • Topology identification unit identifies network topology of devices in the system.
  • Analysis unit generates attack patterns with attack conditions, results, means, and segments.
  • Display control unit displays attack patterns on network topology, changing display mode based on vulnerability type.
      1. Potential Applications

- Cybersecurity analysis and threat detection - Vulnerability assessment and risk management

      1. Problems Solved

- Difficulty in understanding the impact of vulnerabilities on a system - Inefficient analysis of attack patterns and network topology

      1. Benefits

- Improved security posture through better vulnerability understanding - Enhanced visualization of attack patterns for quicker response and mitigation efforts.


Original Abstract Submitted

Provided is an analysis system that allows a security administrator to understand the impact of known vulnerabilities on the system to be diagnosed. The topology identification unit identifies network topology of devices included in a system to be diagnosed. The analysis unit generates an attack pattern that includes an attack condition, an attack result, an attack means that is vulnerability that is used by an attack, and a segment where the attack can occur in the system to be diagnosed. The display control unit displays segments included in attack patterns superimposed on the network topology, on a display device. At this time, the display control unit changes a display mode of the segment according to a type of the vulnerability that corresponds to the attack means included in the attack pattern including the segment.