Threat identification-based collection of forensic data from endpoint devices

    公开(公告)号:US11750663B2

    公开(公告)日:2023-09-05

    申请号:US17371977

    申请日:2021-07-09

    Applicant: Splunk Inc.

    Inventor: Brian Luger

    CPC classification number: H04L63/302 H04L63/145 H04L63/1408 H04L63/308

    Abstract: Techniques and mechanisms are disclosed enabling efficient collection of forensic data from client devices, also referred to herein as endpoint devices, of a networked computer system. Embodiments described herein further enable correlating forensic data with other types of non-forensic data from other data sources. A network security application described herein further enables generating various dashboards, visualizations, and other interfaces for managing forensic data collection, and displaying information related to collected forensic data and information related to identified correlations between items of forensic data and other items of non-forensic data.

    Correlating forensic data collected from endpoint devices with other non-forensic data

    公开(公告)号:US10425442B2

    公开(公告)日:2019-09-24

    申请号:US15276763

    申请日:2016-09-26

    Applicant: Splunk Inc.

    Inventor: Brian Luger

    Abstract: Techniques and mechanisms are disclosed enabling efficient collection of forensic data from client devices, also referred to herein as endpoint devices, of a networked computer system. Embodiments described herein further enable correlating forensic data with other types of non-forensic data from other data sources. A network security application described herein further enables generating various dashboards, visualizations, and other interfaces for managing forensic data collection, and displaying information related to collected forensic data and information related to identified correlations between items of forensic data and other items of non-forensic data.

    Threat identification-based collection of forensic data from endpoint devices

    公开(公告)号:US11095690B2

    公开(公告)日:2021-08-17

    申请号:US16520114

    申请日:2019-07-23

    Applicant: Splunk Inc.

    Inventor: Brian Luger

    Abstract: Techniques and mechanisms are disclosed enabling efficient collection of forensic data from client devices, also referred to herein as endpoint devices, of a networked computer system. Embodiments described herein further enable correlating forensic data with other types of non-forensic data from other data sources. A network security application described herein further enables generating various dashboards, visualizations, and other interfaces for managing forensic data collection, and displaying information related to collected forensic data and information related to identified correlations between items of forensic data and other items of non-forensic data.

    Managing the collection of forensic data from endpoint devices

    公开(公告)号:US10419494B2

    公开(公告)日:2019-09-17

    申请号:US15276761

    申请日:2016-09-26

    Applicant: Splunk Inc.

    Inventor: Brian Luger

    Abstract: Techniques and mechanisms are disclosed enabling efficient collection of forensic data from client devices, also referred to herein as endpoint devices, of a networked computer system. Embodiments described herein further enable correlating forensic data with other types of non-forensic data from other data sources. A network security application described herein further enables generating various dashboards, visualizations, and other interfaces for managing forensic data collection, and displaying information related to collected forensic data and information related to identified correlations between items of forensic data and other items of non-forensic data.

    Correlating forensic and non-forensic data in an information technology environment

    公开(公告)号:US11743285B2

    公开(公告)日:2023-08-29

    申请号:US16528397

    申请日:2019-07-31

    Applicant: Splunk Inc.

    Inventor: Brian Luger

    Abstract: Techniques and mechanisms are disclosed enabling efficient collection of forensic data from client devices, also referred to herein as endpoint devices, of a networked computer system. Embodiments described herein further enable correlating forensic data with other types of non-forensic data from other data sources. A network security application described herein further enables generating various dashboards, visualizations, and other interfaces for managing forensic data collection, and displaying information related to collected forensic data and information related to identified correlations between items of forensic data and other items of non-forensic data.

    THREAT IDENTIFICATION-BASED COLLECTION OF FORENSIC DATA FROM ENDPOINT DEVICES

    公开(公告)号:US20210400088A1

    公开(公告)日:2021-12-23

    申请号:US17371977

    申请日:2021-07-09

    Applicant: Splunk Inc.

    Inventor: Brian Luger

    Abstract: Techniques and mechanisms are disclosed enabling efficient collection of forensic data from client devices, also referred to herein as endpoint devices, of a networked computer system. Embodiments described herein further enable correlating forensic data with other types of non-forensic data from other data sources. A network security application described herein further enables generating various dashboards, visualizations, and other interfaces for managing forensic data collection, and displaying information related to collected forensic data and information related to identified correlations between items of forensic data and other items of non-forensic data.

    CORRELATING FORENSIC AND NON-FORENSIC DATA IN AN INFORMATION TECHNOLOGY ENVIRONMENT

    公开(公告)号:US20190356676A1

    公开(公告)日:2019-11-21

    申请号:US16528397

    申请日:2019-07-31

    Applicant: Splunk Inc.

    Inventor: Brian Luger

    Abstract: Techniques and mechanisms are disclosed enabling efficient collection of forensic data from client devices, also referred to herein as endpoint devices, of a networked computer system. Embodiments described herein further enable correlating forensic data with other types of non-forensic data from other data sources. A network security application described herein further enables generating various dashboards, visualizations, and other interfaces for managing forensic data collection, and displaying information related to collected forensic data and information related to identified correlations between items of forensic data and other items of non-forensic data.

    MANAGING THE COLLECTION OF FORENSIC DATA FROM ENDPOINT DEVICES

    公开(公告)号:US20180091559A1

    公开(公告)日:2018-03-29

    申请号:US15276761

    申请日:2016-09-26

    Applicant: Splunk Inc.

    Inventor: Brian Luger

    Abstract: Techniques and mechanisms are disclosed enabling efficient collection of forensic data from client devices, also referred to herein as endpoint devices, of a networked computer system. Embodiments described herein further enable correlating forensic data with other types of non-forensic data from other data sources. A network security application described herein further enables generating various dashboards, visualizations, and other interfaces for managing forensic data collection, and displaying information related to collected forensic data and information related to identified correlations between items of forensic data and other items of non-forensic data.

    CORRELATING FORENSIC DATA COLLECTED FROM ENDPOINT DEVICES WITH OTHER NON-FORENSIC DATA

    公开(公告)号:US20180091529A1

    公开(公告)日:2018-03-29

    申请号:US15276763

    申请日:2016-09-26

    Applicant: Splunk Inc.

    Inventor: Brian Luger

    Abstract: Techniques and mechanisms are disclosed enabling efficient collection of forensic data from client devices, also referred to herein as endpoint devices, of a networked computer system. Embodiments described herein further enable correlating forensic data with other types of non-forensic data from other data sources. A network security application described herein further enables generating various dashboards, visualizations, and other interfaces for managing forensic data collection, and displaying information related to collected forensic data and information related to identified correlations between items of forensic data and other items of non-forensic data.

Patent Agency Ranking