Patent · US Active

Endpoint detection and response system event characterization data transfer

US10944761B2 · kind B2 · utility

0Cited by
6References
26Claims
0Family size

Assignee

Inventors

Key dates

Filing dateApr 24, 2018
Grant dateMar 9, 2021
Priority date
Expiry dateMay 3, 2039

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06F21/31
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

An endpoint computer system monitors data relating to a plurality of events occurring within an operating environment of the endpoint computer system. The monitoring can include receiving and/or inferring the data using one or more sensors executing on the endpoint computer system. The endpoint computer system can store artifacts used in connection with the plurality of events in a vault maintained on such endpoint computer system. The endpoint computer system, in response to a trigger, identifies and retrieves metadata characterizing artifacts associated with the trigger from the vault. Such identified and retrieved metadata is then provided by the endpoint computer system to a remote server.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.