Aggregated Software Security Data Access via Unified Interface

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Users face challenges in accessing accurate and up-to-date software security information due to its dispersion across various unreliable sources, requiring extensive searches to find specific vulnerabilities and fixes.

Innovation Solution

A method that aggregates software security data from multiple online sources, enabling access through a graphical user interface for analysis, using real-time crawlers to collect and organize data by attributes such as product name, version, and trust ratings, providing a user-friendly dashboard for in-depth studies and trend analysis.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Quantity of substance

If software security information is distributed across multiple online sources, then the quantity of security information increases, but the ease of accessing accurate and up-to-date information deteriorates

Engineering Contradiction:
Improvequantity of security informationVSAvoidease of accessing security information
Core Design Contradiction:
Quantity of substanceVSEase of operation

Solution Approach 1:

The patent combines multiple online security information sources into a single unified platform. The system aggregates vulnerability data, security bulletins, and threat intelligence from various vendors and sources, presenting them through one integrated interface that eliminates the need for users to search multiple disparate sites.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The patent introduces an intermediary aggregation system that sits between users and multiple security information sources. This intermediary automatically collects, validates, and organizes data from various sources, then presents it in a standardized format through a single access point, reducing user burden while maintaining information quantity.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Loss of information

If users search multiple online sources for specific vulnerabilities, then the completeness of information retrieval increases, but the time required to find specific content increases

Engineering Contradiction:
Improvecompleteness of information retrievalVSAvoidtime to find specific content
Core Design Contradiction:
Loss of informationVSLoss of time

Solution Approach 1:

The patent performs preliminary actions by pre-aggregating and organizing security information from multiple sources before users need it. The system continuously collects and structures vulnerability data, security advisories, and related information in advance, so when users search, the information is already organized and ready for immediate retrieval.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent creates a universal search platform that handles multiple types of security information (vulnerabilities, fixes, bulletins, threat intelligence) from multiple sources through a single search interface. This multi-functional system retrieves comprehensive information across all categories without requiring separate searches for each source or type.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Quantity of substance

If information is aggregated from multiple sources, then the comprehensiveness of security data increases, but the complexity of data verification and reliability assessment increases

Engineering Contradiction:
Improvecomprehensiveness of security dataVSAvoidcomplexity of data verification
Core Design Contradiction:
Quantity of substanceVSDevice complexity

Solution Approach 1:

The patent replaces manual verification processes with automated computational methods. The system uses algorithms to validate, cross-check, and assess the reliability of aggregated security information automatically, eliminating the need for manual verification while maintaining data quality across comprehensive multi-source aggregation.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Data Source

PatentUS8234706B2Enabling access to aggregated software security information
Publication Date: 2012.07.31 MICROSOFT TECHNOLOGY LICENSING LLC
  • US8234706B2 patent drawing
  • US8234706B2 patent drawing
  • US8234706B2 patent drawing

AI summary

A method for enabling access to software security data is provided. The method includes accessing data associated with software vulnerabilities from a plurality of on-line sources. The method further includes aggregating the data from the plurality of on-line sources and identifying attributes associated with the data. The method also includes enabling access to the aggregated data through a graphical user interface that can be used to analyze the data according to the attributes.