Software code vulnerability remediation

    公开(公告)号:US11687658B2

    公开(公告)日:2023-06-27

    申请号:US17064186

    申请日:2020-10-06

    CPC classification number: G06F21/577 G06F8/36

    Abstract: Systems and methods automating the process of application code vulnerability remediation. Implementations include building a repository of code revisions as software is checked for security vulnerabilities using or more software analysis tools. In certain implementations, historical code revisions are cataloged and stored in the repository. The revisions may be tokenized and utilized to detect and automatically remediate similar issues when new software packages are submitted to the system.

    SYSTEMS AND METHODS FOR THIRD-PARTY LIBRARY MANAGEMENT

    公开(公告)号:US20230153401A1

    公开(公告)日:2023-05-18

    申请号:US18156179

    申请日:2023-01-18

    CPC classification number: G06F21/105 G06N20/00 G06F8/71 G06F8/36

    Abstract: In accordance with the present approach, a library management system identifies third-party libraries that developers request to incorporate into a software release. The library management system may determine whether a master ticket or usage ticket for a new third-party library exists. If a master or usage ticket is not already existing and approved for the third-party library, the third-party library management system may automatically analyze the third-party library to determine whether it corresponds to third-party libraries that are already approved and stored in a central repository. After approval of a master ticket, the third-party library may be incorporated into the central repository and referenced by subsequent usage tickets that are particular to an individual software release. If not approved, the library management system provides the third-party library to a manual approval system. Moreover, the library management system provides efficient reporting of and access to statuses of the requested third-party libraries.

    SOFTWARE EVALUATION APPARATUS, SOFTWARE EVALUATION METHOD, AND COMPUTER-READABLE MEDIUM

    公开(公告)号:US20230135844A1

    公开(公告)日:2023-05-04

    申请号:US17910290

    申请日:2020-03-24

    Inventor: Yuki MIYAGUCHI

    Abstract: Provided is a software evaluation apparatus capable of appropriately evaluating a tendency of reliability of software. An information acquisition unit (2) acquires software information that is information related to software used in an application, the software enabling a plurality of users to view, use, and modify a source code. A recommended value calculation unit (4) calculates, from the software information, a software recommended value which is a degree of reliability related to the software. A tendency analysis unit (6) analyzes a tendency related to the software based on a change in the software recommended value.

Patent Agency Ranking