-
公开(公告)号:US20230418949A1
公开(公告)日:2023-12-28
申请号:US17847805
申请日:2022-06-23
发明人: Dustin Paul Stocks , Kayla Ashley Rux , Viswanathan Venkatasubramanian , Ramkumar Korlepara , Sanjay Lohar , Eric Eugene Sifford , Ashley L. Jones , David Cuka
CPC分类号: G06F21/577 , G06F40/20 , G06N20/00
摘要: Arrangements for providing software vulnerability analysis and monitoring are provided. In some aspects, software bill of materials (SBOM) data may be received and software attributes may be extracted from the SBOM data. Author data may be received and analyzed using natural language processing and/or machine learning to identify author attributes. Current event or vulnerability data may be received. In some examples, one or more machine learning models may be executed to determine a confidence score associated with the software being analyzed. For instance, software attributes, author attributes, and current event data may be used as inputs in the machine learning model and a confidence score may be output. Based on the confidence score, one or more alerts may be generated and transmitted to one or more enterprise organization computing devices.