Patents by Inventor Jonathan Cran

Jonathan Cran has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 11853932
    Abstract: Techniques for improving communication and expectation setting between various parties/communities of a crowdsourced platform are disclosed. The platform is used for reporting issues in a target system, program or product. A customer/subscriber entity enters a target brief in the platform. In response, a researcher enters a submission in the system. If the submission is valid, it is presented to the customer and a response-time or service level agreement (SLA) timer is started. If the customer agrees with the submission, it is marked as complete and the researcher is paid. If the customer disputes the submission, a third-party intervenes and the timer is paused until dispute resolution. If the submission requires more information the researcher is requested accordingly and the timer is reset. If at any point, the timer expires, the parties are notified and the submission is closed.
    Type: Grant
    Filed: December 19, 2017
    Date of Patent: December 26, 2023
    Assignee: Bugcrowd Inc.
    Inventor: Jonathan Cran
  • Patent number: 11019091
    Abstract: This invention discloses systems and methods for detecting vulnerabilities in IT assets by utilizing crowdsourcing techniques. A corpus containing vulnerability data of IT assets with known vulnerabilities is established. Vulnerability data in the corpus comprises security aspects or attributes related to the IT assets. The security aspects of an IT asset constitute its attack surface which is represented as a feature vector in a feature space. A determination is made as to how similar/close a target asset whose unknown vulnerabilities are to be detected, is to the rest of the IT assets in the corpus. This determination is made based on a measure of similarity/distance between the respective feature vectors in the feature space. Based on the review of similarity results by a community of researchers/experts, a determination of unknown vulnerabilities in the target system is made.
    Type: Grant
    Filed: October 30, 2019
    Date of Patent: May 25, 2021
    Assignee: Bugcrowd Inc.
    Inventors: Jonathan Cran, Michael James O'Kelly, Casey John Ellis
  • Patent number: 10972494
    Abstract: This invention discloses systems and methods for detecting vulnerabilities in IT assets by utilizing crowdsourcing techniques. A corpus containing vulnerability data of IT assets with known vulnerabilities is established. Vulnerability data in the corpus comprises security aspects or attributes related to the IT assets. The security aspects of an IT asset constitute its attack surface which is represented as a feature vector in a feature space. A determination is made as to how similar/close a target asset whose unknown vulnerabilities are to be detected, is to the rest of the IT assets in the corpus. This determination is made based on a measure of similarity/distance between the respective feature vectors in the feature space. Based on the review of similarity results by a community of researchers/experts, a determination of unknown vulnerabilities in the target system is made.
    Type: Grant
    Filed: October 10, 2016
    Date of Patent: April 6, 2021
    Assignee: BugCrowd, Inc.
    Inventors: Jonathan Cran, Michael James O'Kelly, Casey John Ellis
  • Publication number: 20200076847
    Abstract: This invention discloses systems and methods for detecting vulnerabilities in IT assets by utilizing crowdsourcing techniques. A corpus containing vulnerability data of IT assets with known vulnerabilities is established. Vulnerability data in the corpus comprises security aspects or attributes related to the IT assets. The security aspects of an IT asset constitute its attack surface which is represented as a feature vector in a feature space. A determination is made as to how similar/close a target asset whose unknown vulnerabilities are to be detected, is to the rest of the IT assets in the corpus. This determination is made based on a measure of similarity/distance between the respective feature vectors in the feature space. Based on the review of similarity results by a community of researchers/experts, a determination of unknown vulnerabilities in the target system is made.
    Type: Application
    Filed: October 30, 2019
    Publication date: March 5, 2020
    Inventors: Jonathan Cran, Michael James O'Kelly, Casey John Ellis
  • Publication number: 20190188626
    Abstract: Techniques for improving communication and expectation setting between various parties/communities of a crowdsourced platform are disclosed. The platform is used for reporting issues in a target system, program or product. A customer/subscriber entity enters a target brief in the platform. In response, a researcher enters a submission in the system. If the submission is valid, it is presented to the customer and a response-time or service level agreement (SLA) timer is started. If the customer agrees with the submission, it is marked as complete and the researcher is paid. If the customer disputes the submission, a third-party intervenes and the timer is paused until dispute resolution. If the submission requires more information the researcher is requested accordingly and the timer is reset. If at any point, the timer expires, the parties are notified and the submission is closed.
    Type: Application
    Filed: December 19, 2017
    Publication date: June 20, 2019
    Inventor: Jonathan Cran
  • Publication number: 20180103054
    Abstract: This invention discloses systems and methods for detecting vulnerabilities in IT assets by utilizing crowdsourcing techniques. A corpus containing vulnerability data of IT assets with known vulnerabilities is established. Vulnerability data in the corpus comprises security aspects or attributes related to the IT assets. The security aspects of an IT asset constitute its attack surface which is represented as a feature vector in a feature space. A determination is made as to how similar/close a target asset whose unknown vulnerabilities are to be detected, is to the rest of the IT assets in the corpus. This determination is made based on a measure of similarity/distance between the respective feature vectors in the feature space. Based on the review of similarity results by a community of researchers/experts, a determination of unknown vulnerabilities in the target system is made.
    Type: Application
    Filed: October 10, 2016
    Publication date: April 12, 2018
    Inventors: Jonathan Cran, Michael O'Kelly