PREDICTING EVENT LOG ENTRIES
    1.
    发明申请

    公开(公告)号:US20220382663A1

    公开(公告)日:2022-12-01

    申请号:US17755891

    申请日:2019-12-20

    Abstract: A method is disclosed. The method comprises analyzing, using a processing apparatus, event log entries of a plurality of devices, the plurality of devices forming part of a group of devices sharing a common attribute, wherein event log entries of a device relate to events that have taken place during a first period of interest in respect of that device. The method also comprises determining, using the processing apparatus, for a given device in the group of devices, based on the analysis of event log entries, a predicted entry that is expected to appear in the event log of the given device during the first period of interest. An apparatus and a machine-readable medium are also disclosed.

    DATA TAGS GENERATIONS IN NETWORK ENVIRONMENTS

    公开(公告)号:US20240305456A1

    公开(公告)日:2024-09-12

    申请号:US18179229

    申请日:2023-03-06

    CPC classification number: H04L9/088 H04L9/0822 H04L9/3073

    Abstract: A computing device may receive data associated with an event from an originating apparatus in the form of a data item. The computing device may then apply an evaluation function to the data item, wherein applying the evaluation function generates a processing result characterizing an aspect of the data item. The computing device may generate a tag based on the processing result. The computing device may associate the generated tag with the data, wherein the tag is transmitted with the data outside the network environment where the data item is not accessible for processing outside the network environment, but the data tag is accessible. The computing device may provide the data and the tag for transmission.

    ACTIVITY DETECTION BASED ON TIME DIFFERENCE METRICS

    公开(公告)号:US20210288982A1

    公开(公告)日:2021-09-16

    申请号:US17303581

    申请日:2021-06-02

    Abstract: In some examples, a system determines a difference between a received time indication and a previous time indication, performs a modular arithmetic operation with respect to a first integer on the difference, and increments a count related to a first set associated with a first result of the modular arithmetic operation. The system compares respective counts associated with respective sets of a plurality of sets including the first set, wherein each set of the plurality of sets is associated with a different result of the modular arithmetic operation, and detects an occurrence of a security intrusion based on the comparison.

    MODIFYING RULE SYSTEMS
    5.
    发明申请

    公开(公告)号:US20250148313A1

    公开(公告)日:2025-05-08

    申请号:US18725933

    申请日:2022-01-11

    Abstract: In an example, a method is described. The method comprises receiving an indication of a change to a computing system useable in a computing network. The method further comprises establishing whether a rule system is affected by the change. In response to establishing that the rule system is affected by the change, the method causes the rule system to be modified to account for the change.

    TELEMETRY DATA
    7.
    发明申请

    公开(公告)号:US20220382858A1

    公开(公告)日:2022-12-01

    申请号:US17761637

    申请日:2019-10-21

    Abstract: An apparatus and method is described comprising: classifying service ticket data relating to a service request into a service topic, wherein the service ticket data is obtained from the service request relating to a device; determining, for the service request, an extent to which the service topic matches a telemetry data class, wherein the telemetry data class relates to activities at the device; and providing an output according to said determination.

    Telemetry data
    9.
    发明授权

    公开(公告)号:US12265610B2

    公开(公告)日:2025-04-01

    申请号:US17761637

    申请日:2019-10-21

    Abstract: An apparatus and method is described comprising: classifying service ticket data relating to a service request into a service topic, wherein the service ticket data is obtained from the service request relating to a device; determining, for the service request, an extent to which the service topic matches a telemetry data class, wherein the telemetry data class relates to activities at the device; and providing an output according to said determination.

    CONFIGURING OPERATIONAL ANALYTICS
    10.
    发明申请

    公开(公告)号:US20220173994A1

    公开(公告)日:2022-06-02

    申请号:US17417132

    申请日:2019-08-16

    Abstract: Configuring analytics to be performed at an endpoint device, comprising receiving at least one analytic input determined from instrumented processes operated at the endpoint device, performing at least one analytic of a set of analytics stored in the endpoint device, to produce a respective analytic output, transmitting the at least one analytic output to the server, receiving, from the server, at least one analytics configuration update, based on measures indicative of the usefulness of the analytics calculated at the server, to reconfigure at least one of the set of analytics stored in the endpoint device. Based on the received analytics configuration updates, the endpoint device reconfigures at least one of the set of analytics by at least one of: stopping or starting performing the analytic, and tuning how the analytic is performed.

Patent Agency Ranking