Invention Grant
- Patent Title: Detecting sensitive data exposure via logging
-
Application No.: US16515073Application Date: 2019-07-18
-
Publication No.: US11263346B2Publication Date: 2022-03-01
- Inventor: Bartlomiej Tomasz Malecki , Maria Hanna Oleszkiewicz , Blazej Rafal Rutkowski , Daniel Jakub Ryszka
- Applicant: International Business Machines Corporation
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agent Jeffrey M. Ingalls
- Main IPC: G06F21/62
- IPC: G06F21/62 ; G06F21/60 ; G06F9/54 ; G06F16/17

Abstract:
A method for controlling exposure of sensitive data though a logging system is provided. The method comprises: upon receiving a request by the request handler, determining sensitive data as part of the request by applying a rule, converting the data into a transformed format, and registering the data together with a related data field label with a log handler. Then, upon receiving by the log handler a log entry, converting each expression of the log entry into the transformed format, and comparing each transformed expression with each of the sensitive data in the transformed format. Upon determining a match of one of the transformed expressions with one of the sensitive data in the transformed format, the method comprises issuing an alert indicating that the log entry comprises sensitive data.
Public/Granted literature
- US20200285773A1 DETECTING SENSITIVE DATA EXPOSURE VIA LOGGING Public/Granted day:2020-09-10
Information query