Patent · US Active

Augmenting parsers by added parser stages

US12204433B1 · kind B1 · utility

0Cited by
0References
11Claims
0Family size

Assignee

Inventors

Key dates

Filing dateOct 30, 2023
Grant dateJan 21, 2025
Priority date
Expiry dateOct 30, 2043

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06F40/221
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

Systems and methods include identifying fields associated with a log event of telemetry data and, for each field, selecting a key from multiple keys and generating a field-key mapping that includes a mapping from the fields to the selected key. The systems and methods generate an event log parser extension that includes the field-key mappings and validate the parser extension by testing its performance on sample log events. The systems and methods then execute a base parser and the validated event log parser extension on event logs to convert the event logs into a standardized format and perform data analytics on the standardized event logs to identify trends in the event logs and identify possible threats.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.