The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Mar. 07, 2023

Filed:

Sep. 25, 2019
Applicant:

Acronis International Gmbh, Schaffhausen, CH;

Inventors:

Vladimir Strogov, Moscow, RU;

Oleg Ishanov, Moscow, RU;

Alexey Dod, Moscow, RU;

Serguei Beloussov, Costa del Sol, SG;

Stanislav Protasov, Moscow, RU;

Assignee:

Acronis International GmbH, Schaffhausen, CH;

Attorneys:
Primary Examiner:
Int. Cl.
CPC ...
H04L 9/40 (2022.01); G06F 11/14 (2006.01);
U.S. Cl.
CPC ...
H04L 63/1416 (2013.01); G06F 11/1464 (2013.01); G06F 11/1469 (2013.01); H04L 63/1441 (2013.01); G06F 2201/84 (2013.01);
Abstract

Disclosed herein are systems and method for generating and storing forensics-specific metadata. In one aspect, a digital forensics module is configured to generate a backup of user data stored on a computing device in accordance with a backup schedule. The digital forensics module identifies, from a plurality of system metadata of the computing device, forensics-specific metadata of the computing device based on predetermined rules, wherein the forensics-specific metadata is utilized for detecting suspicious digital activity. The digital forensics module generates a backup of the forensics-specific metadata in accordance with the backup schedule and analyzes the forensics-specific metadata for an indication of the suspicious digital activity on the computing device. In response to detecting the suspicious digital activity based on the analysis, generates a security event indicating that the suspicious digital activity has occurred.


Find Patent Forward Citations

Loading…