TECHNIQUES FOR SECURING VIRTUAL MACHINES BY APPLICATION USE ANALYSIS

    公开(公告)号:US20230089313A1

    公开(公告)日:2023-03-23

    申请号:US18055150

    申请日:2022-11-14

    发明人: Avi Shua

    摘要: A system and method for securing virtual cloud assets in a cloud computing environment against cyber threats. The method includes: determining a location of a snapshot of at least one virtual disk of a protected virtual cloud asset, wherein the virtual cloud asset is instantiated in the cloud computing environment; accessing the snapshot of the virtual disk based on the determined location; analyzing the snapshot of the protected virtual cloud asset to detect potential cyber threats risking the protected virtual cloud asset; and alerting detected potential cyber threats based on a determined priority.

    Prioritizing internet-accessible workloads for cyber security

    公开(公告)号:US11582257B2

    公开(公告)日:2023-02-14

    申请号:US17716491

    申请日:2022-04-08

    发明人: Avi Shua

    IPC分类号: H04L9/40

    摘要: Methods and systems for assessing internet exposure of a cloud-based workload are disclosed. A method comprises accessing at least one cloud provider API to determine a plurality of entities capable of routing traffic in a virtual cloud environment associated with a target account containing the workload, querying the at least one cloud provider API to determine at least one networking configuration of the entities, building a graph connecting the plurality of entities based on the networking configuration, accessing a data structure identifying services publicly accessible via the Internet and capable of serving as an internet proxy; integrating the identified services into the graph; traversing the graph to identify at least one source originating via the Internet and reaching the workload, and outputting a risk notification associated with the workload. Systems and computer-readable media implementing the above method are also disclosed.

    Hybrid deployment of ephemeral scanners

    公开(公告)号:US11616803B2

    公开(公告)日:2023-03-28

    申请号:US17716583

    申请日:2022-04-08

    发明人: Avi Shua

    摘要: A cybersecurity scanner deployment system, comprising: at least one processor configured to: access a primary account maintained in a cloud environment; receive information defining a structure of the primary account, the structure including a plurality of assets, and the information excluding raw data of the primary account; deploy, inside the primary account or a secondary account for which trust is established with the primary account, at least one ephemeral scanner configured to scan at least one block storage volume and output metadata defining the at least one block storage volume, the output excluding raw data of the primary account; receive a transmission of the metadata from the at least one ephemeral scanner, excluding raw data of the primary account; analyze the metadata to identify cybersecurity vulnerabilities; correlate each of the cybersecurity vulnerabilities with one of the assets; and generate a report correlating the cybersecurity vulnerabilities with the assets.

    TECHNIQUES FOR SECURING VIRTUAL MACHINES

    公开(公告)号:US20220417270A1

    公开(公告)日:2022-12-29

    申请号:US17821345

    申请日:2022-08-22

    发明人: Avi Shua

    摘要: A system and method for securing virtual cloud assets in a cloud computing environment against cyber threats. The method includes: determining a location of a snapshot of at least one virtual disk of a protected virtual cloud asset, wherein the virtual cloud asset is instantiated in the cloud computing environment; accessing the snapshot of the virtual disk based on the determined location; analyzing the snapshot of the protected virtual cloud asset to detect potential cyber threats risking the protected virtual cloud asset; and alerting detected potential cyber threats based on a determined priority.

    Techniques for securing virtual machines

    公开(公告)号:US11516231B2

    公开(公告)日:2022-11-29

    申请号:US17330998

    申请日:2021-05-26

    发明人: Avi Shua

    摘要: A system and method for securing virtual cloud assets in a cloud computing environment against cyber threats. The method includes: determining a location of a snapshot of at least one virtual disk of a protected virtual cloud asset, wherein the virtual cloud asset is instantiated in the cloud computing environment; accessing the snapshot of the virtual disk based on the determined location; analyzing the snapshot of the protected virtual cloud asset to detect potential cyber threats risking the protected virtual cloud asset; and alerting detected potential cyber threats based on a determined priority.

    TECHNIQUES FOR SECURING VIRTUAL MACHINES BY ANALYZING DATA FOR CYBER THREATS

    公开(公告)号:US20230092220A1

    公开(公告)日:2023-03-23

    申请号:US18055220

    申请日:2022-11-14

    发明人: Avi Shua

    摘要: A system and method for securing virtual cloud assets in a cloud computing environment against cyber threats. The method includes: determining a location of a snapshot of at least one virtual disk of a protected virtual cloud asset, wherein the virtual cloud asset is instantiated in the cloud computing environment; accessing the snapshot of the virtual disk based on the determined location; analyzing the snapshot of the protected virtual cloud asset to detect potential cyber threats risking the protected virtual cloud asset; and alerting detected potential cyber threats based on a determined priority.