US 12,348,485 B2
Systems and methods for determining asset importance in security risk management
Daniel Dahlberg, Somerville, MA (US)
Assigned to BitSight Technologies, Inc., Boston, MA (US)
Filed by BitSight Technologies, Inc., Boston, MA (US)
Filed on Jan. 25, 2024, as Appl. No. 18/422,470.
Application 18/422,470 is a continuation of application No. 17/320,997, filed on May 14, 2021, granted, now 11,949,655.
Application 17/320,997 is a continuation of application No. 17/039,675, filed on Sep. 30, 2020, granted, now 11,032,244, issued on Jun. 8, 2021.
Claims priority of provisional application 62/908,565, filed on Sep. 30, 2019.
Prior Publication US 2024/0163252 A1, May 16, 2024
This patent is subject to a terminal disclaimer.
Int. Cl. G06F 15/173 (2006.01); G06F 16/951 (2019.01); H04L 9/40 (2022.01); H04L 61/4511 (2022.01); H04L 61/5007 (2022.01)
CPC H04L 63/0236 (2013.01) [G06F 16/951 (2019.01); H04L 61/4511 (2022.05); H04L 61/5007 (2022.05); H04L 63/0823 (2013.01); H04L 63/145 (2013.01)] 24 Claims
OG exemplary drawing
 
1. A computer-implemented method for ranking importance of assets of an entity, the assets comprising Internet Protocol (IP) addresses associated with the entity, the method comprising:
receiving at least one of:
a first dataset comprising (i) a first plurality of IP addresses associated with the entity and (ii) lookup counts for each IP address of the first plurality of IP addresses;
a second dataset comprising at least one service or application type associated with at least one IP address associated with the entity; or
a third dataset comprising fingerprints and/or cookies associated with a second plurality of IP addresses associated with the entity;
determining input data based on the received at least one first dataset, second dataset, or third dataset such that:
when the first dataset is received, determining a first input data comprising a ratio of (a) a number of lookup counts of the first plurality of IP addresses to (b) a maximum number of lookup counts of the first plurality of IP addresses;
when the second dataset is received, determining a second input data comprising a ranking of the at least one service or application type, the ranking determined by comparing each service or application type to a database of pre-ranked service or application types; and
when the third dataset is received, determining a third input data comprising a ratio of (a) a number of unique fingerprints and/or unique cookies of an IP address of the second plurality of IP addresses to (b) a maximum of numbers of unique fingerprints and/or unique cookies for the second plurality of IP addresses of the entity; and
determining, for each IP address associated with the entity, an IP address importance ranking based on the determined input data.