Network Risk Identification via Exit Point IP Reputation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current computing devices lack a comprehensive network security overview when connecting to third-party networks, making users vulnerable to cyber threats and online risks, as they cannot adequately assess the security of unknown networks.

Innovation Solution

A method that determines the public IP address of the exit point of a third-party network and uses an IP reputation service to provide a reputation rating, allowing users to make informed decisions about connecting to the network, which differs from traditional security measures like firewalls and anti-virus software by assessing the entire network rather than individual devices.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional security measures like firewalls and anti-virus software are used, then individual device security is improved, but comprehensive network security assessment capability deteriorates

Engineering Contradiction:
Improvedevice securityVSAvoidnetwork security assessment capability
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent introduces an intermediary system that acts as a mediator between computing devices and third-party networks. This intermediary assesses network security by evaluating the public IP address of the network's exit point and provides risk information to users, enabling comprehensive network security assessment without requiring changes to individual device security configurations.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If computing devices connect to unknown public networks, then network accessibility and convenience are improved, but security risk assessment capability deteriorates

Engineering Contradiction:
Improvenetwork accessibilityVSAvoidsecurity risk assessment capability
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The system performs preliminary security assessment actions before users connect to unknown public networks. By evaluating the public IP address of the network exit point in advance and providing risk information to users prior to connection, the system enables informed decision-making about network accessibility without compromising security.

Inventive Principle:
Principle #10Preliminary action

3Reliability

If personal security tools are used on individual devices, then device-level protection is improved, but large-scale network security monitoring deteriorates

Engineering Contradiction:
Improvedevice-level protectionVSAvoidnetwork security coverage scope
Core Design Contradiction:
ReliabilityVSArea of stationary object

Solution Approach 1:

The patent creates a universal security assessment system that serves multiple computing devices simultaneously. By focusing on assessing the public IP address of the network exit point, the system provides large-scale network security monitoring that benefits all devices connecting to the same network, rather than limiting protection to individual device levels.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS11310660B2Identifying network risk
Publication Date: 2022.04.19 INTERNATIONAL BUSINESS MACHINE CORPORATION
  • US11310660B2 patent drawing
  • US11310660B2 patent drawing
  • US11310660B2 patent drawing

AI summary

Embodiments are disclosed for a method for identifying network risk. The method includes determining that a computing device has created a new connection to a network. Additionally, the method includes determining the public internet protocol (public IP) address of the exit point used by the network. Further, the method includes determining a reputation rating of the network based on the public IP address of the exit point. The method also includes providing a notification indicating the reputation rating of the network.