Patent · US Active

Real-time alert reasoning and priority-based campaign discovery

US11368470B2 · kind B2 · utility

1Cited by
9References
25Claims
0Family size

Assignee

Inventors

Key dates

Filing dateJun 13, 2019
Grant dateJun 21, 2022
Priority date
Expiry dateMar 3, 2040

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/1483
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

Advanced Persistent Threat (APT) defense leverages priority-based tracking around alerts, together with priority-based alert reasoning task scheduling. In one embodiment, individual alert reasoning tasks are managed by an alert scheduler, which effectively allocates available computation resources to prioritize the alert reasoning tasks, which each execute within processing workers that are controlled by the alert scheduler. An alert reasoning task typically is prioritized (relative to other such tasks) according to one or more factors, such as severity levels, elapsed time, and other tracking results. By implementing priority-based task scheduling, the task scheduler provides for alert reasoning tasks that are interruptible. In this approach, and once an alert is assigned to a task and the task assigned a worker, priority-based connectivity tracker around each alert is carried out to provide further computational efficiency.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.