GENERATING META-NOTABLE EVENT SUMMARY INFORMATION

    公开(公告)号:US20210058418A1

    公开(公告)日:2021-02-25

    申请号:US16944460

    申请日:2020-07-31

    Applicant: Splunk Inc.

    Abstract: Techniques and mechanisms are disclosed for a data intake and query system to generate “meta-notable” events by applying a meta-notable event rule to a collection of notable event data. A meta-notable event rule specifies one or more patterns of notable event instances defined by a set of notable event states and a set of transition rules (also referred to as association rules) indicating conditions for transitioning from one notable event state to another. The set of notable event states includes at least one start state and at least one end state. A meta-notable event is generated when a set of analyzed notable events satisfies a set of transition rules linking a start state to an end state (including transitions through any intermediary states between the start state and the end state).

    SYSTEMS AND METHODS FOR DETECTING NETWORK SECURITY THREAT EVENT PATTERNS

    公开(公告)号:US20190098032A1

    公开(公告)日:2019-03-28

    申请号:US15715015

    申请日:2017-09-25

    Applicant: Splunk Inc.

    Abstract: Techniques and mechanisms are disclosed for a data intake and query system to generate “meta-notable” events by applying a meta-notable event rule to a collection of notable event data. A meta-notable event rule specifies one or more patterns of notable event instances defined by a set of notable event states and a set of transition rules (also referred to as association rules) indicating conditions for transitioning from one notable event state to another. The set of notable event states includes at least one start state and at least one end state. A meta-notable event is generated when a set of analyzed notable events satisfies a set of transition rules linking a start state to an end state (including transitions through any intermediary states between the start state and the end state).

Patent Agency Ranking