Time-Based Contextual Graph for Cloud Security Anomaly Analysis

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current systems for managing and securing cloud infrastructure face challenges in efficiently reconfiguring network topologies, detecting and visualizing network intrusions, and assembling disparate information into a comprehensive analytic picture for situational awareness and risk assessment.

Innovation Solution

A computer-implemented system that generates time-based contextual graphs in a cloud computing environment, allowing for the analysis of security anomalies by identifying parent nodes, determining hierarchical node relationships, and analyzing risks, thereby providing a comprehensive visual representation of cloud infrastructure and application properties across time.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If manual tasks are used to change network configuration, then accuracy and control are improved, but time consumption and productivity are worsened

Engineering Contradiction:
Improveconfiguration accuracyVSAvoidreconfiguration speed
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The patent replaces manual mechanical configuration tasks with automated software-based systems. The system uses configuration management tools that automatically propagate changes across the network, replacing manual command-line operations with automated scripting and configuration management software that achieves both speed and accuracy.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Solution Approach 2:

The system implements self-service configuration capabilities where the network management system automatically detects changes, validates configurations, and propagates updates without requiring manual intervention at each step. The system monitors itself and automatically responds to configuration needs, reducing both time and human error.

Inventive Principle:
Principle #25Self-service

2Reliability

If multiple security analysis tools are used, then comprehensive security analysis is improved, but system complexity and ease of operation are worsened

Engineering Contradiction:
Improvesecurity analysis completenessVSAvoidtool consolidation
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent merges multiple security analysis tools into a unified platform that consolidates security information and event management capabilities. The system integrates network monitoring, vulnerability assessment, intrusion detection, and risk analysis into a single cohesive system, eliminating the need for analysts to juggle multiple separate consoles and tools.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The system implements a universal security management platform that performs multiple security analysis functions through a single interface. The tool can conduct network monitoring, vulnerability scanning, intrusion detection, and risk assessment, making it a multi-functional system that replaces several specialized tools while providing comprehensive security coverage.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Manufacturing precision

If network topology changes are made manually, then precision and control are improved, but time consumption is worsened

Engineering Contradiction:
Improvetopology configuration precisionVSAvoidreconfiguration time
Core Design Contradiction:
Manufacturing precisionVSLoss of time

Solution Approach 1:

The system performs preliminary validation and planning of topology changes before actual implementation. Configuration changes are pre-validated against policy rules and dependency graphs, and change propagation paths are predetermined, allowing rapid execution without manual step-by-step configuration at the network devices themselves.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS12293234B2System and method for generating time-based contextual graph in cloud computing environment
Publication Date: 2025.05.06 UNO AI INC
  • US12293234B2 patent drawing
  • US12293234B2 patent drawing
  • US12293234B2 patent drawing

AI summary

A computer-implemented system and method for generating time-based contextual graph in cloud computing environment is disclosed. The system receives, from computing devices, requests corresponding to security anomaly analysis of cloud infrastructure-based resources and applications. The system identifies parent node and node attributes corresponding to parent node in cloud infrastructure-based resources and/or applications, based on requests. Further, system determines hierarchical node relationships between parent node and child nodes, based on identified node attributes. Furthermore, system analyses risks in context of security anomaly associated with cloud infrastructure-based resources and/or applications, based on hierarchical node relationships between parent node and child nodes. Further, system generates time-based contextual graph corresponding to analyzed risks in context of security anomaly, based on determined hierarchical node relationships. Furthermore, system outputs on display associated with the computing devices, result corresponding to analyzed risks in context of security anomaly using generated time-based contextual graph.