-
公开(公告)号:US20240080329A1
公开(公告)日:2024-03-07
申请号:US18139610
申请日:2023-04-26
申请人: Lacework, Inc.
发明人: Theodore M. Reed , Nolan K. Karpinski , Xiaofei Guo , Christopher Hall , John Payyappillil John , Matti A. Vanninen , Naveen Kumar Bibinagar , Yijou Chen , Sowmya A. Karmali
IPC分类号: H04L9/40 , G06F9/455 , G06F9/54 , G06F16/901 , G06F16/9038 , G06F16/9535 , G06F16/9537 , G06F21/57 , H04L43/045 , H04L43/06 , H04L67/306 , H04L67/50
CPC分类号: H04L63/1425 , G06F9/455 , G06F9/545 , G06F16/9024 , G06F16/9038 , G06F16/9535 , G06F16/9537 , G06F21/57 , H04L43/045 , H04L43/06 , H04L63/10 , H04L67/306 , H04L67/535 , G06F16/2456
摘要: An illustrative method for performing a risk scenario assessment and remediation may include identifying, based on posture data associated with a compute environment, one or more compute resources deployed in the compute environment that are configured to be connected to a network, accessing runtime workload data associated with the one or more compute resources representative of network activity for the one or more compute resources, and performing, based on the posture data and the runtime workload data, a remediation operation associated with the one or more compute resources.
-
公开(公告)号:US12130878B1
公开(公告)日:2024-10-29
申请号:US17729256
申请日:2022-04-26
申请人: Lacework, Inc.
发明人: Anil K. Nanduri , Prakash Jalan , Matti A. Vanninen , Ammar G. Ekbote , Alex Ramachandran Nirmala , Yijou Chen
IPC分类号: G06F16/9537 , G06F9/455 , G06F9/54 , G06F16/2455 , G06F16/901 , G06F16/9038 , G06F16/9535 , G06F21/57 , H04L9/40 , H04L43/045 , H04L43/06 , H04L67/306 , H04L67/50
CPC分类号: G06F16/9537 , G06F9/455 , G06F9/545 , G06F16/9024 , G06F16/9038 , G06F16/9535 , G06F21/57 , H04L43/045 , H04L43/06 , H04L63/10 , H04L67/306 , H04L67/535 , G06F16/2456
摘要: Example systems and methods monitor a cloud compute environment. An example method includes: determining, by an agent deployed in a cloud environment and based on a plurality of data packets transmitted over a plurality of network interfaces of the cloud environment, a set of data packets that are associated with a communication between a first container and a second container; determining, by the agent and based on the set of data packets, communication data associated with the communication; and providing, by the agent, the communication data to a data platform, wherein providing the communication data to the data platform uses less network resources than providing the set of data packets to the data platform.
-
公开(公告)号:US11792284B1
公开(公告)日:2023-10-17
申请号:US17589361
申请日:2022-01-31
申请人: Lacework, Inc.
发明人: Anil K. Nanduri , Prakash Jalan , Matti A. Vanninen , Ammar G. Ekbote , Alex Ramachandran Nirmala , Yijou Chen
IPC分类号: H04L9/40 , H04L67/50 , G06F16/901 , G06F21/57 , H04L67/306 , G06F16/9038 , G06F16/9537 , G06F9/455 , G06F9/54 , H04L43/045 , H04L43/06 , G06F16/9535 , G06F16/2455
CPC分类号: H04L67/535 , G06F9/455 , G06F9/545 , G06F16/9024 , G06F16/9038 , G06F16/9535 , G06F16/9537 , G06F21/57 , H04L43/045 , H04L43/06 , H04L63/10 , H04L67/306 , G06F16/2456
摘要: Example systems and methods monitor a cloud compute environment. An example method includes an agent obtaining a data packet from an interface in the cloud compute environment, the data packet including a source address and a non-endpoint destination address; determining, based on the non-endpoint destination address and routing information for the data packet, an endpoint destination address associated with the non-endpoint destination address of the data packet; modifying the data packet by replacing the non-endpoint destination address with the endpoint destination address; and providing, based on the modified data packet, monitoring data to a data platform.
-
公开(公告)号:US20230075355A1
公开(公告)日:2023-03-09
申请号:US17837815
申请日:2022-06-10
申请人: Lacework, Inc.
发明人: Andrew Twigg , Matti A. Vanninen , Theodore M. Reed , Ulfar Erlingsson , Christien R. Rioux , Yijou Chen
IPC分类号: H04L9/40 , G06F16/901 , G06F21/57 , H04L67/306 , G06F16/9038 , G06F16/9537 , G06F9/455 , G06F9/54 , H04L43/045 , H04L43/06 , G06F16/9535 , H04L67/50
摘要: An illustrative method for monitoring a cloud environment may include identifying, by at least one computing device and based on a scan of a cloud environment, a vulnerable software component in the cloud environment, determining, by the at least one computing device, an operational status for the vulnerable software component in the cloud environment, and generating, by the at least one computing device and based on the operational status for the vulnerable software component, an alert for the vulnerable software component.
-
-
-