Invention Grant
- Patent Title: Classifying kill-chains for security incidents
-
Application No.: US14824262Application Date: 2015-08-12
-
Publication No.: US09888029B2Publication Date: 2018-02-06
- Inventor: Sourabh Satish , Oliver Friedrichs , Atif Mahadik , Govind Salinas
- Applicant: Phantom Cyber Corporation
- Applicant Address: US CA Palo Alto
- Assignee: Phantom Cyber Corporation
- Current Assignee: Phantom Cyber Corporation
- Current Assignee Address: US CA Palo Alto
- Main IPC: G06F17/00
- IPC: G06F17/00 ; H04L29/06 ; G06F21/55 ; G06F17/30 ; H04L12/851

Abstract:
Systems, methods, and software described herein provide security actions based on the current state of a security threat. In one example, a method of operating an advisement system in a computing environment with a plurality of computing assets includes identifying a security threat within the computing environment. The method further includes, in response to identifying the security threat, obtaining state information for the security threat within the computing environment, and determining a current state for the security threat within the computing environment. The method also provides obtaining enrichment information for the security threat and determining one or more security actions for the security threat based on the enrichment information and the current state for the security threat.
Public/Granted literature
- US20160164891A1 CLASSIFYING KILL-CHAINS FOR SECURITY INCIDENTS Public/Granted day:2016-06-09
Information query