- Patent Title: Gathering indicators of compromise for security threat detection
-
Application No.: US15394377Application Date: 2016-12-29
-
Publication No.: US10469509B2Publication Date: 2019-11-05
- Inventor: Carey Stover Nachenberg , Maxime Lamothe-Brassard , Shapor Naghibzadeh
- Applicant: Chronicle LLC
- Applicant Address: US CA Mountain View
- Assignee: Chronicle LLC
- Current Assignee: Chronicle LLC
- Current Assignee Address: US CA Mountain View
- Agency: Fish & Richardson P.C.
- Main IPC: G06F21/00
- IPC: G06F21/00 ; H04L29/06

Abstract:
The subject matter of this specification generally relates to computer security. In some implementations, a method includes receiving indicators of compromise from multiple security data providers. Each indicator of compromise can include data specifying one or more characteristics of one or more computer security threats. Each indicator of compromise can be configured to, when processed by a computer, cause the computer to detect the presence of the specified one or more characteristics of the one or more computer security threats. Telemetry data for computing systems of users can be received. The telemetry data can include data describing at least one event detected at the computing system. A determination is made that the telemetry data for a given user includes the one or more characteristics specified by a given indicator of compromise.
Public/Granted literature
- US20180191747A1 GATHERING INDICATORS OF COMPROMISE FOR SECURITY THREAT DETECTION Public/Granted day:2018-07-05
Information query