The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Apr. 13, 2021

Filed:

Mar. 23, 2020
Applicant:

Secureworks Corp., Wilmington, DE (US);

Inventor:

Lewis McLean, Edinburgh, GB;

Assignee:

Secureworks Corp., Wilmington, DE (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G06F 21/00 (2013.01); G06F 16/25 (2019.01); H04L 29/06 (2006.01); G06F 16/23 (2019.01); G06F 40/205 (2020.01); H04L 12/26 (2006.01); H04L 12/24 (2006.01); G06F 40/295 (2020.01);
U.S. Cl.
CPC ...
G06F 16/258 (2019.01); G06F 16/2365 (2019.01); G06F 16/254 (2019.01); G06F 40/205 (2020.01); H04L 63/1416 (2013.01); H04L 63/1425 (2013.01); G06F 40/295 (2020.01); H04L 41/069 (2013.01); H04L 43/18 (2013.01);
Abstract

A method of normalizing security log data can include receiving one or more security logs including unstructured data from a plurality of devices and reviewing unstructured data of the one or more security logs. The method also can include automatically applying a probabilistic model of one or more engines to identify one or more attributes or features of the unstructured data, and determine whether the identified attributes or features are indicative of identifiable entities, and tagging one or more identifiable entities of the identifiable entities, as well as organizing tagged entities into one or more normalized logs having a readable format with a prescribed schema. In addition, the method can include reviewing the one or more normalized logs for potential security events.


Find Patent Forward Citations

Loading…