Outer Rim Archives
Archives · 2026 · 12645791

Granted patent

Automated application security onboarding

Number
12645791
Published
2026-06-02
Filed
2024-10-08
Assignee
DISNEY ENTERPRISES, INC.
Inventors
Nguyen; Truong Tuan, Gustafson; Christian Matthew, Babb; Daniel Micah, De Hoop; Kenneth William, Kish; Danielle
CPC
G06F21/554; G06F21/577; G06F2221/033
Verdict
Set aside billing/fraud, security/drm, business-ops
Source
Google Patents · FreePatentsOnline

The keeper's note

The present invention sets forth a technique for performing automated application security onboarding.

Abstract

The present invention sets forth a technique for performing automated application security onboarding. The technique includes receiving, via an interactive dashboard, a designation associated with a software application and one or more items of application information associated with the software application. The technique also includes determining, in real-time and based on one or more schemas, that that the one or more items of application information are sufficient for executing one or more of a plurality of software scanning tools. The technique further includes transmitting the designation and the one or more items of application information to the plurality of software scanning tools, analyzing the software application via the plurality of software scanning tools, receiving, from the plurality of software scanning tools, one or more scan results based on the analysis, and displaying the one or more scan results via the interactive dashboard.

Background

BACKGROUND Field of the Various Embodiments (1) Embodiments of the present disclosure relate generally to computer security and, more specifically, to techniques for performing automated application security onboarding in enterprise environments. Description of the Related Art (2) Application security onboarding is a critical task for many organizations, and is necessary to assess application-level security vulnerabilities in locally developed or third-party software applications. Security vulnerabilities may include instances of cross-site scripting, SQL injection, or embedded secrets, such as personally identifiable information (PII), passwords, or authentication tokens. Application security onboarding may include scanning an application via one or more security tools, such as Static Application Security Testing (SAST) tools, Dynamic Application Security Testing (DAST) tools, Software Component Analysis (SCA) tools, or penetration testing. (3) Existing techniques for performing application security onboarding are typically limited to manually scanning applications individually via multiple disparate security tools. Consequently, these techniques do not scale to very large collections of applications and are not computationally performant to scan a large number of applications in an acceptable period of time. For example, manually scanning thousands of applications via existing techniques may require several years to complete. (4) Furthermore, existing application security o

Claims

1. A computer-implemented method for performing automated software security scanning, the method comprising: receiving, via an interactive dashboard, a designation associated with a software application and one or more items of application information associated with the software application; determining, in real-time and based on one or more input schemas, that the one or more items of application information are sufficient for executing one or more of a plurality of software scanning tools, wherein the one or more input schemas are stored in a schema database and each of the one or more input schemas specifies (a) a first set of one or more items of application information required by a software scanning tool included in the plurality of software tools and (b) a required format associated with each of one or more of the items of application information included in the first set of one or more items of application information; transmitting the designation and the one or more items of application information to the plurality of software scanning tools; analyzing the software application via the plurality of software scanning tools; receiving, from the plurality of software scanning tools, one or more scan results based on the analysis; and displaying the one or more scan results via the interactive dashboard. || 11. One or more non-transitory computer-readable media storing instructions that, when executed by one or more processors, cause the one or more processors to perform the steps of: receiving, via an interactive dashboard, a designation associated with a software application and one or more items of application information associated with the software application; determining, in real-time and based on one or more input schemas, that the one or more items of application information are sufficient for executing one or more of a plurality of software scanning tools, wherein the one or more input schemas are stored in a schema database and each of the one or more input schemas specifies (a) a first set of one or more items of application information required by a software scanning tool included in the plurality of software tools and (b) a required format associated with each of one or more of the items of application information included in the first set of one or more items of application information; transmitting the designation and the one or more items of application information to the plurality of software scanning tools; analyzing the software application via the plurality of software scanning tools; receiving, from the plurality of software scanning tools, one or more scan results based on the analysis; and displaying the one or more scan results via the interactive dashboard. || 18. A system comprising: one or more memories storing instructions; and one or more processors for executing the instructions to: receive, via an interactive dashboard, a designation associated with a software application and one or more items of application information associated with the software application; determine, in real-time and based on one or more input schemas, that the one or more items of application information are sufficient for executing one or more of a plurality of software scanning tools, wherein the one or more input schemas are stored in a schema database and each of the one or more input schemas specifies (a) a first set of one or more items of application information required by a software scanning tool included in the plurality of software tools and (b) a required format associated with each of one or more of the items of application information included in the first set of one or more items of application information; transmit the designation and the one or more items of application information to the plurality of software scanning tools; analyze the software application via the plurality of software scanning tools; receive, from the plurality of software scanning tools, one or more scan results based on the analysis; and display the one or more scan results via the interactive dashboard.