The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Aug. 15, 2023

Filed:

Oct. 21, 2020
Applicant:

Rapid7, Inc., Boston, MA (US);

Inventors:

Shreyas Khare, Toronto, CA;

Kyle Alexander Hubbard, Toronto, CA;

Suyuan Yu, Toronto, CA;

Assignee:

Rapid7, Inc., Boston, MA (US);

Attorneys:
Primary Examiner:
Int. Cl.
CPC ...
G06F 16/11 (2019.01); G06F 11/14 (2006.01);
U.S. Cl.
CPC ...
G06F 16/128 (2019.01); G06F 11/1451 (2013.01); G06F 11/1464 (2013.01); G06F 2201/84 (2013.01);
Abstract

Systems and methods are disclosed to implement a contextual comparison of machine registry hive files. In embodiments, the comparison process is implemented by a data collection agent that periodically uploads changes in a client machine registry to a machine assessment service. During a data collection, the agent compares a binary hive file generated from the current state of the registry with another binary hive file generated in the last period. The differences are captured in a text-encoded patch file, which is used to update a snapshot of the registry maintained by the machine assessment service. The comparison is performed directly on the two binary hive files without converting them into text files, so that the process can be performed more quickly and using less compute bandwidth. Moreover, the comparison process can be extended to implement a variety of custom behaviors based on the contents of the hive files.


Find Patent Forward Citations

Loading…