US 11,949,655 B2
Systems and methods for determining asset importance in security risk management
Daniel Dahlberg, Somerville, MA (US)
Assigned to BitSight Technologies, Inc., Boston, MA (US)
Filed by BitSight Technologies, Inc., Boston, MA (US)
Filed on May 14, 2021, as Appl. No. 17/320,997.
Application 17/320,997 is a continuation of application No. 17/039,675, filed on Sep. 30, 2020, granted, now 11,032,244.
Claims priority of provisional application 62/908,565, filed on Sep. 30, 2019.
Prior Publication US 2021/0344647 A1, Nov. 4, 2021
This patent is subject to a terminal disclaimer.
Int. Cl. G06F 15/173 (2006.01); G06F 16/951 (2019.01); H04L 9/40 (2022.01); H04L 61/4511 (2022.01); H04L 61/5007 (2022.01)
CPC H04L 63/0236 (2013.01) [G06F 16/951 (2019.01); H04L 61/4511 (2022.05); H04L 61/5007 (2022.05); H04L 63/0823 (2013.01); H04L 63/145 (2013.01)] 23 Claims
OG exemplary drawing
 
1. A computer-implemented method for ranking importance of assets of an entity, the assets comprising hosts associated with the entity, the method comprising:
receiving at least one of:
a first dataset comprising (i) a respective plurality of hostnames of a plurality of hosts and (ii) lookup counts for each hostname of the plurality of hostnames, the lookup counts obtained from a stream of a domain name system (DNS) queries; or
a second dataset comprising source code for a plurality of websites indicating, for each website, whether a host of the website is configured to collect data from users, the websites associated with the entity;
determining input data based on the received at least one first dataset or second dataset such that:
when the first dataset is received, determining a first input data comprising, for each host of the plurality of hosts, a ratio of (a) a number of lookup counts of the hostname of the host to (b) a maximum number of lookup counts of the plurality of hostnames for the entity; and
when the second dataset is received, determining a second input data indicating, for each host of the website, whether the source code indicates that the host is configured to collect data from users of the web site; and
determining, for each host associated with the entity, a host importance ranking based on the determined input data.