Patents by Inventor Sam Ng Ming Sum

Sam Ng Ming Sum has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 10587641
    Abstract: Example embodiments disclosed herein relate to generating a point-wise protection based on dynamic security analysis. Vulnerability solution recommendation are provided based on the dynamic security analysis. A point-wise protection is generated based on a selection of the vulnerability solution recommendation.
    Type: Grant
    Filed: May 20, 2014
    Date of Patent: March 10, 2020
    Assignee: MICRO FOCUS LLC
    Inventors: Matias Madou, Ronald Joseph Sechman, Sam Ng Ming Sum
  • Patent number: 10423793
    Abstract: Example embodiments disclosed herein relate to an approach for installing a runtime agent during a security test. A security test is initiated or performed on an application under test executing on a server. An application vulnerability associated with the application under test is determined. The application vulnerability is exploited to install the runtime agent on the server. The security test is continued using the runtime agent to receive additional information about the application under test.
    Type: Grant
    Filed: June 19, 2014
    Date of Patent: September 24, 2019
    Assignee: ENTIT SOFTWARE LLC
    Inventors: Matias Madou, Ronald J. Sechman, Sam Ng Ming Sum
  • Patent number: 10210335
    Abstract: Example embodiments disclosed herein relate to actively modify execution at runtime of an application under test (AUT). The AUT is executed using a real-time modifier. A security test is performed on the AUT. Execution of the AUT is modified at a decision point.
    Type: Grant
    Filed: July 26, 2012
    Date of Patent: February 19, 2019
    Assignee: Entit Software LLC
    Inventors: Matias Madou, Kirill Mendelev, Sam Ng Ming Sum
  • Patent number: 9953169
    Abstract: Example embodiments disclosed herein relate to modifying execution of an application under test to act as if a user is a power user. The application under test is hosted in a real-time modifier. A security crawl is performed on the application under test logged in as the user. The user is treated as a power user.
    Type: Grant
    Filed: February 28, 2013
    Date of Patent: April 24, 2018
    Assignee: Entit Software LLC
    Inventors: Sam Ng Ming Sum, Matias Madou
  • Publication number: 20170185784
    Abstract: Example embodiments disclosed herein relate to generating a point-wise protection based capable of being implemented using a runtime agent. Security information including line of code information associated with possible vulnerabilities are processed to determine vulnerability solution recommendations. A vulnerability solution recommendation is presented. The point-wise protection is generated based on a selection input for the vulnerability solution recommendation, where the point-wise protection is capable of being implemented using a runtime agent.
    Type: Application
    Filed: May 20, 2014
    Publication date: June 29, 2017
    Inventors: Matias MADOU, Ronald SECHMAN, Sam NG MING SUM
  • Publication number: 20170187743
    Abstract: Example embodiments disclosed herein relate to generating a point-wise protection based on dynamic security analysis. Vulnerability solution recommendation are provided based on the dynamic security analysis. A point-wise protection is generated based on a selection of the vulnerability solution recommendation.
    Type: Application
    Filed: May 20, 2014
    Publication date: June 29, 2017
    Inventors: Matias Madou, Ronald J. SECHMAN, Sam NG MING SUM
  • Publication number: 20170103211
    Abstract: Example embodiments disclosed herein relate to an approach for installing a runtime agent during a security test. A security test is initiated or performed on an application under test executing on a server. An application vulnerability associated with the application under test is determined. The application vulnerability is exploited to install the runtime agent on the server. The security test is continued using the runtime agent to receive additional information about the application under test.
    Type: Application
    Filed: June 19, 2014
    Publication date: April 13, 2017
    Inventors: Matias MADOU, Ronald J. SECHMAN, Sam NG MING SUM
  • Patent number: 9558355
    Abstract: Example embodiments disclosed herein relate to generating a scanning strategy based on a dynamic taint module. A dynamic taint module associated with an application is caused to be initiated for a crawling phase of a security test. A report is received from the dynamic taint module. The dynamic taint module is restricted. The scanning strategy is based on the report.
    Type: Grant
    Filed: August 29, 2012
    Date of Patent: January 31, 2017
    Assignee: HEWLETT PACKARD ENTERPRISE DEVELOPMENT LP
    Inventors: Matias Madou, Sam Ng Ming Sum
  • Patent number: 9438617
    Abstract: Example embodiments disclosed herein relate to real-time modification of an application under test (AUT). A security rest is performed on the AUT. A real-time modifier determines that a portion of a function to be executed by the AUT is unsafe. The real-time modifier modifies execution of the AUT to not execute the portion.
    Type: Grant
    Filed: September 28, 2012
    Date of Patent: September 6, 2016
    Assignee: Hewlett Packard Enterprise Development LP
    Inventors: Kirill Mendelev, Matias Madou, Sam Ng Ming Sum
  • Publication number: 20150264074
    Abstract: Example embodiments disclosed herein relate to real-time modification of an application under test (AUT). A security rest is performed on the AUT. A real-time modifier determines that a portion of a function to be executed by the AUT is unsafe. The real-time modifier modifies execution of the AUT to not execute the portion.
    Type: Application
    Filed: September 28, 2012
    Publication date: September 17, 2015
    Applicant: Hewlett-Packard Development Company, L.P.
    Inventors: Kirill Mendelev, Matias Madou, Sam Ng Ming Sum
  • Publication number: 20150248558
    Abstract: Example embodiments disclosed herein relate to actively modify execution at runtime of an application under test (AUT). The AUT is executed using a real-time modifier. A security test is performed on the AUT. Execution of the AUT is modified at a decision point.
    Type: Application
    Filed: July 26, 2012
    Publication date: September 3, 2015
    Applicant: HEWLETT-PACKARD DEVELOPMENT COWMPANY, L.P.
    Inventors: Matias Madou, Kirill Mendelev, Sam Ng Ming Sum
  • Publication number: 20150248559
    Abstract: Example embodiments disclosed herein relate to generating a scanning strategy based on a dynamic taint module. A dynamic taint module associated with an application is caused to be initiated for a crawling phase of a security test. A report is received from the dynamic taint module. The dynamic taint module is restricted. The scanning strategy is based on the report.
    Type: Application
    Filed: August 29, 2012
    Publication date: September 3, 2015
    Inventors: Matias Madou, Sam Ng Ming Sum
  • Publication number: 20140245460
    Abstract: Example embodiments disclosed herein relate to modifying execution of an application under test to act as if a user is a power user. The application under test is hosted in a real-time modifier. A security crawl is performed on the application under test logged in as the user. The user is treated as a power user.
    Type: Application
    Filed: February 28, 2013
    Publication date: August 28, 2014
    Applicant: Hewlett-Packard Development Company
    Inventors: Sam Ng Ming Sum, Matias Madou