Performing iterative entity discovery and instrumentation

    公开(公告)号:US11755453B1

    公开(公告)日:2023-09-12

    申请号:US17973394

    申请日:2022-10-25

    Applicant: SPLUNK Inc.

    CPC classification number: G06F11/3495

    Abstract: In response to receiving a selection of an option to discover uninstrumented entities within a monitored environment, information retrieved from monitoring agents currently installed on instrumented entities within a system is analyzed to discover additional entities within the system that are connected to the instrumented entities. Each of these discovered entities is analyzed to determine whether a monitoring agent is able to be installed within the entity; if installation is possible, such installation is automatically performed (or a guided manual installation is implemented utilizing an interface). After a monitoring agent is installed within a discovered entity, information is retrieved from that monitoring agent may be used to discover additional entities within the system that are connected to that discovered entity. In this way, an iterative discovery of all entities within a system may be performed. Results of this iterative discovery may be presented via an interface.

    Correlating forensic and non-forensic data in an information technology environment

    公开(公告)号:US11743285B2

    公开(公告)日:2023-08-29

    申请号:US16528397

    申请日:2019-07-31

    Applicant: Splunk Inc.

    Inventor: Brian Luger

    Abstract: Techniques and mechanisms are disclosed enabling efficient collection of forensic data from client devices, also referred to herein as endpoint devices, of a networked computer system. Embodiments described herein further enable correlating forensic data with other types of non-forensic data from other data sources. A network security application described herein further enables generating various dashboards, visualizations, and other interfaces for managing forensic data collection, and displaying information related to collected forensic data and information related to identified correlations between items of forensic data and other items of non-forensic data.

    Queries based on selected subsets of textual representations of events

    公开(公告)号:US11741086B2

    公开(公告)日:2023-08-29

    申请号:US17121935

    申请日:2020-12-15

    Applicant: SPLUNK Inc.

    CPC classification number: G06F16/2428 G06F3/0482 G06F3/04842 G06F3/04847

    Abstract: A search interface is displayed in a table format that includes one or more columns, each column including data items of an event attribute, the data items being of a set of events, and a plurality of rows forming cells with the one or more columns, each cell displaying a textual representation of at least one of the data items of the event attribute of a corresponding column. Based on a user selecting a portion of the textual representation in a corresponding cell, a list of options is displayed that corresponds to the selected portion of the textual representation. Furthermore, one or more commands are added to a search query that corresponds to the set of events, the one or more commands being based on at least an option that is selected from the list of options and the selected portion of the textual representation in the corresponding cell.

    Secure update of dashboard properties

    公开(公告)号:US11736452B1

    公开(公告)日:2023-08-22

    申请号:US17246536

    申请日:2021-04-30

    Applicant: SPLUNK INC.

    CPC classification number: H04L63/0428 H04L63/0272 H04L63/0869

    Abstract: In various embodiments, a computer-implemented method comprises determining that a first property associated with a dashboard is modified at a first device, determining that the dashboard is accessible at a second device, where the first device and the second device are coupled via a trusted tunnel bridge, and in a real-time response to determining that the first property was modified, transmitting, to the second device via the trusted tunnel bridge, an update that causes the second device modify the dashboard based on the modified first property.

Patent Agency Ranking