Invention Grant
- Patent Title: Security monitoring with progressive behavioral query language databases
-
Application No.: US15684325Application Date: 2017-08-23
-
Publication No.: US10831750B2Publication Date: 2020-11-10
- Inventor: Xusheng Xiao , Zhichun Li , Mu Zhang , Guofei Jiang , Jiaping Gui , Ding Li
- Applicant: NEC Laboratories America, Inc.
- Applicant Address: JP
- Assignee: NEC Corporation
- Current Assignee: NEC Corporation
- Current Assignee Address: JP
- Agent Joseph Kolodka
- Main IPC: G06F7/00
- IPC: G06F7/00 ; G06F16/2453 ; G06F21/62 ; G06F16/245 ; G06F21/57 ; G06F16/22

Abstract:
Automated security systems and methods include a set monitored systems, each having one or more corresponding monitors configured to record system state information. A progressive software behavioral query language (PROBEQL) database is configured to store the system state information from the monitored systems. A query optimizing module is configured to optimize a database query for parallel execution using spatial and temporal information relating to elements in the PROBEQL database. The optimized database query is split into sub-queries with sub-queries being divided spatially according to host and temporally according to time window. A parallel execution module is configured to execute the sub-queries on the PROBEQL database in parallel. A results module is configured to output progressive results of the database query. A security control system is configured to perform a security control action in accordance with the progressive results.
Public/Granted literature
- US20180060586A1 Security Monitoring with Progressive Behavioral Query Language Databases Public/Granted day:2018-03-01
Information query