Network Activity Analysis for Enterprise Application Update Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

There is no standard and universal method for administrators to detect new versions of applications across different vendors in enterprise environments, limiting their ability to apply the latest versions and potentially exposing systems to security threats due to disabled auto-update functions.

Innovation Solution

A computer-implemented method that records network activity, identifies changes in application attributes, and locates information on how to manually update applications, allowing administrators to control updates and disable auto-update functions for security purposes.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Stability of the object's composition

If auto-update function is disabled to maintain version control, then version stability is improved, but ability to apply latest versions deteriorates

Engineering Contradiction:
Improveversion stabilityVSAvoidability to apply latest versions
Core Design Contradiction:
Stability of the object's compositionVSProductivity

Solution Approach 1:

The system enables administrators to manually initiate updates by analyzing network activity to automatically discover update information, eliminating the need for auto-update functions while maintaining the ability to apply latest versions on demand

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system monitors network activity to detect when applications attempt to update, providing feedback to administrators about available updates and enabling informed decisions about when to apply updates manually

Inventive Principle:
Principle #23Feedback

2Difficulty of detecting and measuring

If vendor-specific mechanisms are used to detect new versions, then detection capability is improved, but universality across different vendors deteriorates

Engineering Contradiction:
Improvedetection capabilityVSAvoiduniversality across vendors
Core Design Contradiction:
Difficulty of detecting and measuringVSAdaptability or versatility

Solution Approach 1:

The system uses a universal approach by analyzing network activity patterns that are common across different vendors' applications, enabling a single mechanism to detect updates for multiple applications from different vendors without vendor-specific customization

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The system introduces network activity analysis as an intermediary mechanism that mediates between the application's update attempts and the administrator's awareness, providing a vendor-agnostic way to detect updates through observable network behavior

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If manual update process is implemented to control updates, then security control is improved, but time to apply updates deteriorates

Engineering Contradiction:
Improvesecurity controlVSAvoidtime to apply updates
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The system performs preliminary analysis of network activity to automatically discover and prepare update information in advance, so when administrators decide to apply updates, the necessary information is already ready, reducing the time required to execute manual updates while maintaining security control

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS10318272B1Systems and methods for managing application updates
Publication Date: 2019.06.11 CA TECH INC
  • US10318272B1 patent drawing
  • US10318272B1 patent drawing
  • US10318272B1 patent drawing

AI summary

The disclosed computer-implemented method for managing application updates may include (i) recording network activity of a target application, (ii) recording an identifying attribute of the target application that is associated with a current version of the target application, (iii) determining, based on recording the identifying attribute, that the target application has attempted to update from a previous version of the target application to the current version of the target application, (iv) locating a portion of network activity that reveals how to manually update an instance of the previous version of the target application, and (v) perform, in response to locating the portion of network activity that reveals how to manually update the instance of the previous version of the target application, a security action to protect a user from a candidate security threat. Various other methods, systems, and computer-readable media are also disclosed.