Continuous database security and compliance

US11645392B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-11645392-B2
Application numberUS-202117219874-A
CountryUS
Kind codeB2
Filing dateMar 31, 2021
Priority dateAug 22, 2018
Publication dateMay 9, 2023
Grant dateMay 9, 2023

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A method by one or more electronic devices to notify an administrator when it is safe to mitigate a non-compliant database configuration of a database. The method includes responsive to identifying the non-compliant database configuration of the database, applying a security rule that detects occurrences of database operations that make use of the non-compliant database configuration and responsive to a determination that the security rule has not been invoked for at least a threshold length of time, causing a notification to be sent to the administrator that indicates that it is safe for the administrator to mitigate the non-compliant database configuration.

First claim

Opening claim text (preview).

What is claimed is: 1. A method by one or more electronic devices to notify an administrator when it is safe to mitigate a non-compliant database configuration of a database, the method comprising: responsive to identifying the non-compliant database configuration of the database, applying a security rule that detects occurrences of database operations that make use of the non-compliant database configuration; and responsive to a determination that the security rule has not been invoked for at least a threshold length of time, causing a notification to be sent to the administrator that indicates that it is safe for the administrator to mitigate the non-compliant database configuration. 2. The method of claim 1 , wherein the determination that the security rule has not been invoked for the threshold length of time is based on a determination that no alerts or blocks associated with the security rule have been invoked for at least the threshold length of time. 3. The method of claim 1 , wherein the notification is displayed on an electronic device operated by the administrator. 4. The method of claim 3 , wherein the administrator is a database administrator (DBA) of the database. 5. The method of claim 1 , wherein the non-compliant database configuration is a configuration that grants a particular privilege to a particular user of the database, and wherein the security rule detects occurrences of database operations where the particular user attempts to make use of the particular privilege. 6. The method of claim 5 , wherein the notification indicates that it is safe for the administrator to reconfigure the database to revoke the particular privilege from the particular user. 7. The method of claim 1 , wherein the threshold length of time is at least one month. 8. The method of claim 1 , wherein the non-compliant database configuration is identified based on accessing a result of a database assessment scan performed on the database. 9. The method of claim 8 , wherein the database assessment scan detects database configurations that are not compliant with a database security benchmark. 10. The method of claim 1 , wherein the one or more electronic devices implement a database activity monitor, and wherein the security rule is applied while monitoring accesses to the database. 11. A set of one or more non-transitory computer readable storage media storing instructions which, when executed by one or more processors of one or more electronic devices, causes the one or more electronic devices to perform operations for notifying an administrator when it is safe to mitigate a non-compliant database configuration of a database, the operations comprising: responsive to identifying the non-compliant database configuration of the database, applying a security rule that detects occurrences of database operations that make use of the non-compliant database configuration; and responsive to a determination that the security rule has not been invoked for at least a threshold length of time, causing a notification to be sent to the administrator that indicates that it is safe for the administrator to mitigate the non-compliant database configuration. 12. The set of one or more non-transitory computer readable storage media of claim 11 , wherein the determination that the security rule has not been invoked for the threshold length of time is based on a determination that no alerts or blocks associated with the security rule have been invoked for at least the threshold length of time. 13. The set of one or more non-transitory computer readable storage media of claim 11 , wherein the notification is displayed on an electronic device operated by the administrator. 14. The set of one or more non-transitory computer readable storage media of claim 11 , wherein the non-compliant database configuration is a configuration that grants a particular privilege to a particular user of the database, and wherein the security rule detects occurrences of database operations where the particular user attempts to make use of the particular privilege. 15. The set of one or more non-transitory computer readable storage media of claim 14 , wherein the notification indicates that it is safe for the administrator to reconfigure the database to revoke the particular privilege from the particular user. 16. An electronic device configured to notify an administrator when it is safe to mitigate a non-compliant database configuration of a database, the electronic device comprising: one or more processors; and a non-transitory machine-readable storage medium having instructions stored therein, which when executed by the one or more processors, causes the electronic device to: responsive to identifying the non-compliant database configuration of the database, apply a security rule that detects occurrences of database operations that make use of the non-compliant database configuration and responsive to a determination that the security rule has not been invoked for at least a threshold length of time, cause a notification to be sent to the administrator that indicates that it is safe for the administrator to mitigate the non-compliant database configuration. 17. The electronic device of claim 16 , wherein the determination that the security rule has not been invoked for the threshold length of time is based on a determination that no alerts or blocks associated with the security rule have been invoked for at least the threshold length of time. 18. The electronic device of claim 16 , wherein the notification is displayed on an electronic device operated by the administrator. 19. The electronic device of claim 16 , wherein the non-compliant database configuration is a configuration that grants a particular privilege to a particular user of the database, and wherein the security rule detects occurrences of database operations where the particular user attempts to make use of the particular privilege. 20. The electronic device of claim 19 , wherein the notification indicates that it is safe for the administrator to reconfigure the database to revoke the particular privilege from the particular user.

Assignees

Inventors

Classifications

  • Database tuning (G06F16/2282 takes precedence; database performance monitoring G06F11/3409) · CPC title

  • G06F21/577Primary

    Assessing vulnerabilities and evaluating computer system security · CPC title

  • G06F21/57Primary

    Certifying or maintaining trusted computer platforms, e.g. secure boots or power-downs, version controls, system software checks, secure updates or assessing vulnerabilities · CPC title

  • Dynamic detection, i.e. detection performed at run-time, e.g. emulation, suspicious activities · CPC title

  • Test or assess software · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US11645392B2 cover?
A method by one or more electronic devices to notify an administrator when it is safe to mitigate a non-compliant database configuration of a database. The method includes responsive to identifying the non-compliant database configuration of the database, applying a security rule that detects occurrences of database operations that make use of the non-compliant database configuration and respon…
Who is the assignee on this patent?
Imperva Inc
What technology area does this patent fall under?
Primary CPC classification G06F21/577. Mapped technology areas include Physics.
When was this patent published?
Publication date Tue May 09 2023 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 12 related publications on this page (citations in our corpus or others sharing the same primary CPC).