Aqua Security Software has been granted a patent for a method that enhances software container security by discovering and evaluating credentials before container instantiation. The method identifies unsafe credentials, intercepts runtime requests, detects violations, and implements corrective actions to ensure credential safety. GlobalData’s report on Aqua Security Software gives a 360-degree view of the company including its patenting strategy. Buy the report here.

According to GlobalData’s company profile on Aqua Security Software, Social data privacy protection was a key innovation area identified from patents. Aqua Security Software's grant share as of June 2024 was 94%. Grant share is based on the ratio of number of grants to total number of patents.

Security method for software container credential management

Source: United States Patent and Trademark Office (USPTO). Credit: Aqua Security Software Ltd

The granted patent US12013928B2 outlines a computer-implemented method and system for enhancing security in software containers by managing credentials. The method involves discovering credentials that a software container is expected to use at runtime, prior to its instantiation from a container image. This discovery process utilizes various sources, including credentials stored in the container image, runtime configuration data, and a secrets management service. The method further identifies an unsafe credential set based on predefined safety criteria, which may include factors such as the age of the credential, its storage location, and its susceptibility to dictionary attacks. During runtime, the system intercepts requests from the software container to detect any violations involving unsafe credentials and subsequently performs corrective actions, which may include preventing execution of the request or substituting unsafe credentials with safe alternatives.

Additionally, the credential safety management system described in the patent comprises processing circuitry that facilitates the discovery and management of credentials. This system is designed to store discovered credentials in a separate repository, ensuring that they are not directly embedded within the container image. The system can also perform pre-runtime scanning and query container orchestrators or secrets management services for credential retrieval. The predefined safety criteria for determining unsafe credentials are comprehensive, addressing various aspects such as credential strength, retrievability, and reuse. The system is equipped to provide alerts for unsafe credential usage and can dynamically obtain safe credentials from a secrets management service when necessary. Overall, this patent presents a structured approach to credential management in software containers, aiming to mitigate security risks associated with credential misuse.

To know more about GlobalData’s detailed insights on Aqua Security Software, buy the report here.

Data Insights

From

The gold standard of business intelligence.

Blending expert knowledge with cutting-edge technology, GlobalData’s unrivalled proprietary data will enable you to decode what’s happening in your market. You can make better informed decisions and gain a future-proof advantage over your competitors.

GlobalData

GlobalData, the leading provider of industry intelligence, provided the underlying data, research, and analysis used to produce this article.

GlobalData Patent Analytics tracks bibliographic data, legal events data, point in time patent ownerships, and backward and forward citations from global patenting offices. Textual analysis and official patent classifications are used to group patents into key thematic areas and link them to specific companies across the world’s largest industries.