The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Sep. 29, 2020

Filed:

Dec. 19, 2017
Applicant:

Threat Stack, Inc., Boston, MA (US);

Inventors:

Christopher Gervais, Westwood, MA (US);

Sean T. Reed, Seattle, WA (US);

Nicholas S. Goodwin, Everett, MA (US);

Joseph D. Baker, Burlington, MA (US);

Samuel Bisbee-vonKaufmann, Braintree, MA (US);

Nathan D. Cooprider, Bedford, MA (US);

David G. Hagman, Tewksbury, MA (US);

Lucas M. Dubois, Dorchester, MA (US);

Jennifer A. Andre, Somerville, MA (US);

Assignee:

Threat Stack, Inc., Boston, MA (US);

Attorneys:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
H04L 29/06 (2006.01); G06F 21/55 (2013.01); G06F 16/174 (2019.01); G06F 21/60 (2013.01);
U.S. Cl.
CPC ...
H04L 63/1425 (2013.01); G06F 16/1748 (2019.01); G06F 21/552 (2013.01); G06F 21/604 (2013.01); H04L 63/1433 (2013.01); H04L 63/20 (2013.01);
Abstract

A cloud-based operating-system-event and data-access monitoring method includes collecting event information from a monitored cloud-based element. One or more structured event payloads based on the event information is then generated. The structured event payloads that produce one or more validated event collections are then validated. The one or more validated event collections are then serialized and filtered to remove redundant structured event payload data. The filtered validated structured event payloads are then de-serialized to produce a time-sequenced, ordered event stream. The time-sequenced, ordered event stream is de-duplicated to remove duplicate structured event payloads. The time-sequenced ordered event stream is then processed to generate processed information security results.


Find Patent Forward Citations

Loading…