Patent №
US 11,722,526
Granted
2023-08-08
Filed 2021
Owner
CITIBANK, N.A.
Lab
—
AI components
4
ml · kr · planning · evo
Assignment
Recorded
Dataset
AIPD
2023_r1 edition
Application
17232607
A model checking system detects violations and conflicts in security and verification policies by running model checking processes. The system detects privilege escalation attacks in misconfigured identification and access management (“IAM”) policies by modeling security policy documents and IAM actions as logical formulas and then running model checking on the model. The system translates non-Boolean variables, such as string variables, into Boolean variables in order to apply an SAT model checker. The model checker also determines whether a policy violation can be achieved in a finite number of steps by elevating privileges of some compromised principal over multiple iterations of the model checking process, or proves absence thereof.
AI classification
Ownership
CITIBANK, N.A.
assignment · 559450128
Assignors
SHEVRIN, ILIA, HOVEL, MICKEY, LEIBOVICH, MAX, MARGALIT, ODED, KAHANA, URI
On an employer assignment, the assignors are typically the inventors.