The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Dec. 16, 2025

Filed:

Aug. 11, 2025
Applicant:

Dropzone.ai, Inc., Seattle, WA (US);

Inventors:

Eric Joseph Hammerle, Kirkland, WA (US);

Xue Jun Wu, Seattle, WA (US);

Colin James Phillips, Kirkland, WA (US);

Changhwan Oh, Shoreline, WA (US);

Robert Rowland Foley, Long Island City, NY (US);

Michael Francis Buono, McLean, VA (US);

Assignee:

Dropzone.ai, Inc., Seattle, WA (US);

Attorneys:
Primary Examiner:
Int. Cl.
CPC ...
G06F 21/57 (2013.01); G06F 21/31 (2013.01);
U.S. Cl.
CPC ...
G06F 21/577 (2013.01); G06F 21/316 (2013.01);
Abstract

Embodiments perform automated threat hunting in computing environments. A threat hunt plan is obtained to guide collection of candidate evidence items from evidence sources. Portions of candidate evidence items are discarded based on relevance scores, and evidence items are determined from non-discarded portions. Threat indicators associated with the evidence items are identified based on criteria in the threat hunt plan. Threat profiles are obtained based on the evidence items and threat indicators such that threat profiles include threat assessment metrics and are included in a report. Collection agents may interface with system logs, network traffic captures, endpoints, databases, email services, or user activity records to gather evidence items based on time ranges, filtering criteria, or sampling rates.


Find Patent Forward Citations

Loading…