Cyber Testbed for Virtual Security Assessment

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current data storage systems face challenges in reducing complexity and efficiently protecting against malware and cyber-attacks, with traditional security tools focusing on known vulnerabilities and lacking holistic protection for entire computing environments.

Innovation Solution

A Cyber Testbed system is created to represent and analyze a customer's computing environment, allowing for vulnerability assessments, simulation of various threats, and recommendation of security improvements without affecting the production system, using a virtualization module, workflow engine, threat library, and analysis module to provide security and business continuity scores.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional security tools are used to protect against known vulnerabilities, then security protection is provided, but holistic protection for entire computing environments is lacking

Engineering Contradiction:
Improvesecurity protectionVSAvoidholistic protection capability
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent creates a virtual copy (testbed) of the production computing environment that replicates systems, configurations, and data. This copy enables comprehensive security testing and vulnerability assessment without affecting the actual production system, thereby providing holistic protection capability while maintaining reliability of the original system.

Inventive Principle:
Principle #26Copying

Solution Approach 2:

The patent segments the security testing process by separating it from the production environment. The testbed environment is divided into isolated components that can be independently tested, configured, and analyzed, allowing thorough security evaluation without compromising the integrity of the production system.

Inventive Principle:
Principle #1Segmentation

2Measurement precision

If security testing is performed on the production system, then security vulnerabilities can be identified, but the production system may be disrupted

Engineering Contradiction:
Improvevulnerability identification accuracyVSAvoidproduction system stability
Core Design Contradiction:
Measurement precisionVSReliability

Solution Approach 1:

The patent creates a virtual replica of the production system that can be used for security testing. This copy maintains the same vulnerabilities and configurations as the production system, allowing accurate vulnerability identification while completely isolating the testing process from the production environment to prevent any disruption.

Inventive Principle:
Principle #26Copying

Solution Approach 2:

The testbed environment serves as an intermediary between the security testing process and the production system. All security tests, attacks, and vulnerability assessments are conducted through this intermediary layer, which transfers only the necessary information back to the production system without allowing direct interaction that could cause disruption.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If comprehensive security testing is implemented, then security and business continuity scores can be provided, but system complexity increases

Engineering Contradiction:
Improvesecurity assessment capabilityVSAvoidtesting system complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent implements a multi-functional testbed system that can perform various security testing operations including vulnerability assessment, penetration testing, malware analysis, and performance testing. This universal platform consolidates multiple testing capabilities into a single system, reducing overall complexity while maintaining comprehensive security assessment capability.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent combines multiple security testing functions, analysis tools, and evaluation metrics into an integrated testbed platform. By merging these separate components into a unified system with centralized control and coordination, the patent reduces the complexity that would otherwise arise from managing multiple separate testing systems.

Inventive Principle:
Principle #5Merging (Combining)

Data Source

PatentUS10320828B1Evaluation of security in a cyber simulator
Publication Date: 2019.06.11 EMC IP HLDG CO LLC
  • US10320828B1 patent drawing
  • US10320828B1 patent drawing
  • US10320828B1 patent drawing

AI summary

A System, Computer Program Product, and Computer-executable method for testing a production system, the System, Computer Program Product, and Computer-executable method including receiving information related to the production system, receiving production data from the production system, creating a virtual production system based off the production system using the received information and the received production data, and analyzing the production system by performing tests on the virtual production system.