Network Activity Analysis for Enterprise Application Update Control
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
There is no standard and universal method for administrators to detect new versions of applications across different vendors in enterprise environments, limiting their ability to apply the latest versions and potentially exposing systems to security threats due to disabled auto-update functions.
Innovation Solution
A computer-implemented method that records network activity, identifies changes in application attributes, and locates information on how to manually update applications, allowing administrators to control updates and disable auto-update functions for security purposes.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Stability of the object's composition
If auto-update function is disabled to maintain version control, then version stability is improved, but ability to apply latest versions deteriorates
Solution Approach 1:
The system enables administrators to manually initiate updates by analyzing network activity to automatically discover update information, eliminating the need for auto-update functions while maintaining the ability to apply latest versions on demand
Solution Approach 2:
The system monitors network activity to detect when applications attempt to update, providing feedback to administrators about available updates and enabling informed decisions about when to apply updates manually
2Difficulty of detecting and measuring
If vendor-specific mechanisms are used to detect new versions, then detection capability is improved, but universality across different vendors deteriorates
Solution Approach 1:
The system uses a universal approach by analyzing network activity patterns that are common across different vendors' applications, enabling a single mechanism to detect updates for multiple applications from different vendors without vendor-specific customization
Solution Approach 2:
The system introduces network activity analysis as an intermediary mechanism that mediates between the application's update attempts and the administrator's awareness, providing a vendor-agnostic way to detect updates through observable network behavior
3Reliability
If manual update process is implemented to control updates, then security control is improved, but time to apply updates deteriorates
Solution Approach 1:
The system performs preliminary analysis of network activity to automatically discover and prepare update information in advance, so when administrators decide to apply updates, the necessary information is already ready, reducing the time required to execute manual updates while maintaining security control
Data Source
AI summary
The disclosed computer-implemented method for managing application updates may include (i) recording network activity of a target application, (ii) recording an identifying attribute of the target application that is associated with a current version of the target application, (iii) determining, based on recording the identifying attribute, that the target application has attempted to update from a previous version of the target application to the current version of the target application, (iv) locating a portion of network activity that reveals how to manually update an instance of the previous version of the target application, and (v) perform, in response to locating the portion of network activity that reveals how to manually update the instance of the previous version of the target application, a security action to protect a user from a candidate security threat. Various other methods, systems, and computer-readable media are also disclosed.


