Invention Grant
- Patent Title: Detection of indicators of attack
-
Application No.: US17896622Application Date: 2022-08-26
-
Publication No.: US12135787B2Publication Date: 2024-11-05
- Inventor: Marc N. McGarry , Nizar A. Basan , Bradley C. Rood , Andy A. Yiu
- Applicant: DELL PRODUCTS L.P.
- Applicant Address: US TX Round Rock
- Assignee: DELL PRODUCTS L.P.
- Current Assignee: DELL PRODUCTS L.P.
- Current Assignee Address: US TX Round Rock
- Agency: Larson Newman, LLP
- Main IPC: G06F21/00
- IPC: G06F21/00 ; G06F21/56 ; G06F21/57

Abstract:
An information handling system includes a basic input/output system (BIOS), a memory, and a processor. The processor scans a current state of each BIOS attribute in the BIOS, and stores one or more changed attributes in a secure event log in the memory. The processor converts each changed attribute into a different threat event including a first changed attribute into a first threat event. The processor provides a list of threat events to multiple threat chains, each of which determine whether the threat events match threat criteria in a threat chain policy. In response to the threat event matching a threat criterion in the threat chain policy, the threat chain provides a threat state change to the processor, which in turn provides new threat state changes to a threat state change consumer.
Public/Granted literature
- US20220414220A1 DETECTION OF INDICATORS OF ATTACK Public/Granted day:2022-12-29
Information query