Patent · US Active

Pattern creation in enterprise threat detection

US11128651B2 · kind B2 · utility

0Cited by
63References
20Claims
0Family size

Assignee

Inventors

Key dates

Filing dateJan 6, 2020
Grant dateSep 21, 2021
Priority date
Expiry dateMar 6, 2040

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06F16/3344
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

Search results are received from an initiated free text search of log data from one or more logs, where the free text is performed using search terms entered into a free text search graphical user interface. A set of at least one search result is selected from the search results containing an event desired to be identified in a completed enterprise threat detection (ETD) pattern. A forensic lab application is rendered to complete an ETD pattern. An event filter is added for an event type based on normalized log data to a path. A relative ETD pattern time range is set and an ETD pattern is completed based on the added event filter.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.