WO2025169149 - AGENTLESS RUNTIME CYBERSECURITY ANALYSIS
National phase entry is expected:
Publication Number
WO/2025/169149
Publication Date
14.08.2025
International Application No.
PCT/IB2025/051333
International Filing Date
07.02.2025
Title **
[English]
AGENTLESS RUNTIME CYBERSECURITY ANALYSIS
[French]
ANALYSE DE CYBERSÉCURITÉ À L'EXÉCUTION SANS AGENT
Applicants **
ZAFRAN SECURITY LTD
Inventors
SERI, Ben
Priority Data
18/436,862
08.02.2024
US
18/662,448
13.05.2024
US
Application details
| Total Number of Claims/PCT | * |
| Number of Independent Claims | * |
| Number of Priorities | * |
| Number of Multi-Dependent Claims | * |
| Number of Drawings | * |
| Pages for Publication | * |
| Number of Pages with Drawings | * |
| Pages of Specification | * |
| * | |
| Number of Office Actions | * |
| * | |
International Searching Authority |
ILPO
* |
| Recordal of a Change of the Applicant's Name/Address |
Change of Applicant's Name and Address
* |
| Type of Assignment |
The Standard Agent's Assignment
* |
| Applicant's Legal Status |
Legal Entity
* |
| * | |
| * | |
| * | |
| * | |
| * | |
| Entry into National Phase under |
Chapter I
* |
| Patent Delivery |
Send the Letters Patent by Courier
* |
| Translation |
|
* The data is based on automatic recognition. Please verify and amend if necessary.
** IP-Coster compiles data from publicly available sources. If this data includes your personal information, you can contact us to request its removal.
Quotation for National Phase entry
| Country | Stages | Total | |
|---|---|---|---|
| China | Filing, Examination, Granting | 2553 | |
| EPO | Filing, Examination, Granting | 17008 | |
| Japan | Filing, Examination, Granting | 2462 | |
| South Korea | Filing, Examination, Granting | 2828 | |
| USA | Filing, Examination, Granting | 5740 |

Total:
30,591
Contact Us
Abstract[English]
Techniques for cybersecurity analysis. A method includes identifying a first set of paths to a first asset. The first set of paths includes a first path which allows for uploading inspection code, a second path which allows for running the inspection code, and a third path which allows for obtaining results of running the inspection code. The first set of paths is selected such that application programming interfaces (APIs) of the first set of paths are at least partially shared with APIs of a second set of paths to each of at least one second asset and, further, selected based on at least one request processing attribute of the at least one API used in order to access the first asset. The inspection code is uploaded via the first path and run via the second path. Outputs of the inspection code are obtained via the third path and analyzed.[French]
L'invention concerne des techniques d'analyse de cybersécurité. Un procédé comprend l'identification d'un premier ensemble de chemins menant à un premier actif. Le premier ensemble de chemins comprend un premier chemin qui permet de téléverser un code d'inspection, un deuxième chemin qui permet d'exécuter le code d'inspection, et un troisième chemin qui permet d'obtenir des résultats d'exécution du code d'inspection. Le premier ensemble de chemins est sélectionné de telle sorte que des interfaces de programmation d'application (API) du premier ensemble de chemins soient au moins partiellement partagées avec des API d'un second ensemble de chemins menant à chaque actif parmi un ou plusieurs seconds actifs et, en outre, est sélectionné sur la base d'au moins un attribut de traitement de demande de l'au moins une API utilisée afin d'accéder au premier actif. Le code d'inspection est téléversé par l'intermédiaire du premier chemin et exécuté par l'intermédiaire du deuxième chemin. Des sorties du code d'inspection sont obtenues par l'intermédiaire du troisième chemin et analysées.