Invention Grant
- Patent Title: System for virtual patching security vulnerabilities in software containers
-
Application No.: US15636694Application Date: 2017-06-29
-
Publication No.: US10534915B2Publication Date: 2020-01-14
- Inventor: Michael Cherny , Sagie Dulce
- Applicant: Aqua Security Software, Ltd.
- Applicant Address: IL
- Assignee: AQUA SECURITY SOFTWARE, LTD.
- Current Assignee: AQUA SECURITY SOFTWARE, LTD.
- Current Assignee Address: IL
- Agency: Carlson, Gaskey & Olds, P.C.
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F21/57 ; G06F21/50 ; G06F11/36 ; G06F21/55

Abstract:
An example computer-implemented method of preventing exploitation of software vulnerabilities includes determining that a software container is susceptible to a vulnerability, determining one or more soft spots required to exploit the vulnerability, and analyzing runtime behavior of the software container to determine if the software container uses the one or more soft spots. The method includes automatically applying a security policy that prevents the software container from using the one or more soft spots based on the analyzing indicating that the software container does not use the one or more soft spots at runtime.
Public/Granted literature
- US20190005246A1 System for Virtual Patching Security Vulnerabilities in Software Containers Public/Granted day:2019-01-03
Information query