Invention Grant
- Patent Title: Detecting and mitigating leaked cloud authorization keys
-
Application No.: US15498418Application Date: 2017-04-26
-
Publication No.: US11178160B2Publication Date: 2021-11-16
- Inventor: Camille Gaspard
- Applicant: Splunk Inc.
- Applicant Address: US CA San Francisco
- Assignee: Splunk Inc.
- Current Assignee: Splunk Inc.
- Current Assignee Address: US CA San Francisco
- Agency: Artegis Law Group, LLP
- Main IPC: G06F21/00
- IPC: G06F21/00 ; H04L29/06 ; H04L29/08

Abstract:
In one embodiment, a discrepancy detection application automatically detects and addresses unauthorized activities associated with one or more authorization keys based on a request log and a provider log. The request log specifies activities that a client initiated, where the activities are associated with the authorization keys. The provider log specifies activities that a cloud provider performed, where the activities are associated with the authorization keys. In operation, the discrepancy detection application determines that one or more unauthorized activities have occurred based on comparing the request log to the provider log. The discrepancy detection application then performs an action that addresses the unauthorized activities. Advantageously, by detecting discrepancies between activities initiated by the client and activities performed by the cloud provider, the discrepancy detection application automatically detects any leaked authorization keys and minimizes resulting damages incurred by the client.
Public/Granted literature
- US20180316702A1 DETECTING AND MITIGATING LEAKED CLOUD AUTHORIZATION KEYS Public/Granted day:2018-11-01
Information query