Invention Grant
- Patent Title: Providing contextual forensic data for user activity-related security incidents
-
Application No.: US16425098Application Date: 2019-05-29
-
Publication No.: US11979424B2Publication Date: 2024-05-07
- Inventor: Liron Levin , Michael Kletselman , Ami Bizamcher , Dima Stopel , John Morello
- Applicant: Twistlock, Ltd.
- Applicant Address: IL Herzliya
- Assignee: Twistlock, Ltd.
- Current Assignee: Twistlock, Ltd.
- Current Assignee Address: IL Herzliya
- Agency: Gilliam IP PLLC
- Main IPC: H04L9/40
- IPC: H04L9/40

Abstract:
Techniques for providing contextual forensic data based on user activities. A first method includes identifying a user action in user activity data, wherein the user action is a discrete event initiated by a user, wherein the user action is performed with respect to a portion of a system; and correlating the identified user action with at least one system change, wherein the at least one system change is related to the portion of the system, wherein the at least one system change occurred after the user action. A second method includes taking a first snapshot before a user action occurs, wherein the user action is a discrete event initiated by a user, wherein the first snapshot is taken of at least a portion of a system; and taking a second snapshot after the user action occurs, wherein the second snapshot is taken of the at least a portion of the system.
Public/Granted literature
- US20200382544A1 SYSTEM AND METHOD FOR PROVIDING CONTEXTUAL FORENSIC DATA FOR USER ACTIVITY-RELATED SECURITY INCIDENTS Public/Granted day:2020-12-03
Information query