US 12,273,412 B2
System and method for analyzing network objects in a cloud environment
Shai Keren, Tel Aviv (IL); Daniel Hershko Shemesh, Givat Shmuel (IL); Roy Reznik, Tel Aviv (IL); Ami Luttwak, Binyamina (IL); and Avihai Berkovitz, Tel Aviv (IL)
Assigned to Wiz, Inc., New York, NY (US)
Filed by Wiz, Inc., New York, NY (US)
Filed on Oct. 2, 2023, as Appl. No. 18/479,573.
Application 18/479,573 is a continuation of application No. 18/478,534, filed on Sep. 29, 2023, granted, now 11,985,185.
Application 18/478,534 is a continuation of application No. 18/341,134, filed on Jun. 26, 2023.
Application 18/341,134 is a continuation of application No. 17/819,442, filed on Aug. 12, 2022, granted, now 11,722,554, issued on Aug. 8, 2023.
Application 17/819,442 is a continuation of application No. 17/109,883, filed on Dec. 2, 2020, granted, now 11,431,786, issued on Aug. 30, 2022.
Prior Publication US 2024/0146799 A1, May 2, 2024
This patent is subject to a terminal disclaimer.
Int. Cl. G06F 15/173 (2006.01); H04L 9/40 (2022.01); H04L 41/046 (2022.01); H04L 41/50 (2022.01); H04L 49/00 (2022.01); H04L 67/10 (2022.01)
CPC H04L 67/10 (2013.01) [H04L 41/046 (2013.01); H04L 41/5096 (2013.01); H04L 49/70 (2013.01); H04L 63/1433 (2013.01)] 19 Claims
OG exemplary drawing
 
1. A method for filtering network insights from vulnerable network objects having cyber-threats, comprising:
collecting object data on objects deployed in a cloud environment, wherein objects are deployed and operable at different layers of the cloud environment;
identifying objects deployed in the cloud environment;
constructing a representation of the cloud environment, including the identified objects and relationships of the identified objects;
generating network insights on the identified objects and the relationships of the identified objects, wherein network insights are natural-language representations of aspects of the constructed representation of the cloud environment;
tagging the identified objects in the representation for which the insight was generated; and
filtering the network insights based on an insight indicating exposure from an external network.