AI Zero-Trust Source Code Monitoring for Execution Anomalies

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current zero-trust security models do not adequately address security risks associated with source codes executed in managed compute facilities, leading to potential breaches and vulnerabilities.

Innovation Solution

Implementing zero-trust principles using artificial intelligence algorithms to analyze source codes and their execution behaviors, including natural language processing and machine learning techniques to attribute codes to developers, monitor coding and execution patterns, and establish baseline profiles to detect anomalies.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If zero-trust security models are implemented for network access control, then network security is improved, but source code security risks are not addressed

Engineering Contradiction:
Improvenetwork securityVSAvoidsource code security coverage
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent segments the security model into two distinct layers: network-level zero-trust security for access control and source code-level AI analysis for code-specific threats. This allows each layer to specialize in its domain while working together comprehensively.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The AI system is designed to perform multiple functions including code attribution, anomaly detection, security risk identification, and behavioral analysis, making it a universal solution for source code security across different programming languages and development scenarios.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Measurement precision

If AI algorithms are used to analyze source code and execution behaviors, then security risk detection capability is improved, but system complexity increases

Engineering Contradiction:
Improveanomaly detection accuracyVSAvoidsecurity system complexity
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The patent introduces execution environment intermediaries that act as mediators between the source code and the AI analysis system. These intermediaries capture execution behaviors and translate them into analyzable data, simplifying the overall system architecture while maintaining high detection accuracy.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

Traditional rule-based code analysis mechanisms are replaced with AI/ML algorithms that automatically learn security patterns and anomalies from data, reducing the need for manual configuration and complex rule sets while improving detection precision.

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

3Reliability

If continuous monitoring of source code development and execution is implemented, then security breach detection is improved, but computational resource consumption increases

Engineering Contradiction:
Improvesecurity breach detectionVSAvoidcomputational resource consumption
Core Design Contradiction:
ReliabilityVSUse of energy by moving object

Solution Approach 1:

The system implements periodic sampling of code execution behaviors rather than continuous uninterrupted monitoring. AI analysis is performed at strategic intervals and triggered by specific events, reducing computational overhead while maintaining effective security detection.

Inventive Principle:
Principle #19Periodic action

Solution Approach 2:

The AI system focuses analysis on partial but critical aspects of code execution such as unusual API calls, unexpected control flow changes, and anomalous data access patterns, rather than analyzing every single operation, optimizing the balance between detection capability and resource consumption.

Inventive Principle:
Principle #16Partial or excessive action

Data Source

PatentUS12488113B2Computer security using zero-trust principles and artificial intelligence for source code
Publication Date: 2025.12.02 PAYPAL INC
  • US12488113B2 patent drawing
  • US12488113B2 patent drawing
  • US12488113B2 patent drawing

AI summary

Computer system security is improved by implementing zero-trust principles for management of source codes in a software development lifecycle. In some embodiments, a source code may be processed with a natural language processor to attribute the source code to its particular developer. Further, a machine learning algorithm may be applied to data related to the coding behavior of the code developer to identify any behavioral anomalies of the code developer in developing the source code. In addition, the interaction, of applications executing in an execution environment of an organization's network of managed compute facilities, with the various components of the network may be analyzed with a machine learning algorithm to identify code execution anomalies.