Security threat detection of newly registered domains
    31.
    发明授权
    Security threat detection of newly registered domains 有权
    新注册域的安全威胁检测

    公开(公告)号:US09248068B2

    公开(公告)日:2016-02-02

    申请号:US14445023

    申请日:2014-07-28

    Applicant: Splunk Inc.

    Abstract: Domain names are determined for each computational event in a set, each event detailing requests or posts of webpages. A number of events or accesses associated with each domain name within a time period is determined. A registrar is further queried to determine when the domain name was registered. An object is generated that includes a representation of the access count and an age since registration for each domain names. A client can interact with the object to explore representations of domain names associated with high access counts and recent registrations. Upon determining that a given domain name is suspicious, a rule can be generated to block access to the domain name.

    Abstract translation: 确定一组中每个计算事件的域名,每个事件详细说明网页的请求或帖子。 确定在一段时间内与每个域名相关联的一些事件或访问。 进一步查询注册商以确定何时注册域名。 生成一个对象,其中包括访问计数的表示和每个域名注册后的年龄。 客户端可以与对象进行交互,以探索与高访问次数和最近注册相关联的域名的表示。 一旦确定给定的域名是可疑的,就可以生成一个规则来阻止对域名的访问。

    Graphic display of security threats based on indications of access to newly registered domains
    32.
    发明授权
    Graphic display of security threats based on indications of access to newly registered domains 有权
    基于对新注册域的访问的指示,图形显示安全威胁

    公开(公告)号:US09173801B2

    公开(公告)日:2015-11-03

    申请号:US14445018

    申请日:2014-07-28

    Applicant: Splunk Inc.

    Abstract: Domain names are determined for each computational event in a set, each event detailing requests or posts of webpages. A number of events or accesses associated with each domain name within a time period is determined. A registrar is further queried to determine when the domain name was registered. An object is generated that includes a representation of the access count and an age since registration for each domain names. A client can interact with the object to explore representations of domain names associated with high access counts and recent registrations. Upon determining that a given domain name is suspicious, a rule can be generated to block access to the domain name.

    Abstract translation: 确定一组中每个计算事件的域名,每个事件详细说明网页的请求或帖子。 确定在一段时间内与每个域名相关联的一些事件或访问。 进一步查询注册商以确定何时注册域名。 生成一个对象,其中包含访问计数的表示和每个域名注册后的年龄。 客户端可以与对象进行交互,以探索与高访问次数和最近注册相关联的域名的表示。 一旦确定给定的域名是可疑的,就可以生成一个规则来阻止对域名的访问。

    SECURITY THREAT DETECTION OF NEWLY REGISTERED DOMAINS
    33.
    发明申请
    SECURITY THREAT DETECTION OF NEWLY REGISTERED DOMAINS 有权
    新注册域名的安全威胁检测

    公开(公告)号:US20150033333A1

    公开(公告)日:2015-01-29

    申请号:US14445023

    申请日:2014-07-28

    Applicant: Splunk Inc.

    Abstract: Domain names are determined for each computational event in a set, each event detailing requests or posts of webpages. A number of events or accesses associated with each domain name within a time period is determined. A registrar is further queried to determine when the domain name was registered. An object is generated that includes a representation of the access count and an age since registration for each domain names. A client can interact with the object to explore representations of domain names associated with high access counts and recent registrations. Upon determining that a given domain name is suspicious, a rule can be generated to block access to the domain name.

    Abstract translation: 确定一组中每个计算事件的域名,每个事件详细说明网页的请求或帖子。 确定在一段时间内与每个域名相关联的一些事件或访问。 进一步查询注册商以确定何时注册域名。 生成一个对象,其中包含访问计数的表示和每个域名注册后的年龄。 客户端可以与对象进行交互,以探索与高访问次数和最近注册相关联的域名的表示。 一旦确定给定的域名是可疑的,就可以生成一个规则来阻止对域名的访问。

    GRAPHIC DISPLAY OF SECURITY THREATS BASED ON INDICATIONS OF ACCESS TO NEWLY REGISTERED DOMAINS
    34.
    发明申请
    GRAPHIC DISPLAY OF SECURITY THREATS BASED ON INDICATIONS OF ACCESS TO NEWLY REGISTERED DOMAINS 有权
    基于访问新注册域名的安全威胁的图形显示

    公开(公告)号:US20150033332A1

    公开(公告)日:2015-01-29

    申请号:US14445018

    申请日:2014-07-28

    Applicant: Splunk Inc.

    Abstract: Domain names are determined for each computational event in a set, each event detailing requests or posts of webpages. A number of events or accesses associated with each domain name within a time period is determined. A registrar is further queried to determine when the domain name was registered. An object is generated that includes a representation of the access count and an age since registration for each domain names. A client can interact with the object to explore representations of domain names associated with high access counts and recent registrations. Upon determining that a given domain name is suspicious, a rule can be generated to block access to the domain name.

    Abstract translation: 确定一组中每个计算事件的域名,每个事件详细说明网页的请求或帖子。 确定在一段时间内与每个域名相关联的一些事件或访问。 进一步查询注册商以确定何时注册域名。 生成一个对象,其中包含访问计数的表示和每个域名注册后的年龄。 客户端可以与对象进行交互,以探索与高访问次数和最近注册相关联的域名的表示。 一旦确定给定的域名是可疑的,就可以生成一个规则来阻止对域名的访问。

    Security threat detection based on indications in big data of access to newly registered domains
    35.
    发明授权
    Security threat detection based on indications in big data of access to newly registered domains 有权
    基于大数据访问新注册域的指示进行安全威胁检测

    公开(公告)号:US08826434B2

    公开(公告)日:2014-09-02

    申请号:US13956262

    申请日:2013-07-31

    Applicant: Splunk Inc.

    Abstract: Domain names are determined for each computational event in a set, each event detailing requests or posts of webpages. A number of events or accesses associated with each domain name within a time period is determined. A registrar is further queried to determine when the domain name was registered. An object is generated that includes a representation of the access count and an age since registration for each domain names. A client can interact with the object to explore representations of domain names associated with high access counts and recent registrations. Upon determining that a given domain name is suspicious, a rule can be generated to block access to the domain name.

    Abstract translation: 确定一组中每个计算事件的域名,每个事件详细说明网页的请求或帖子。 确定在一段时间内与每个域名相关联的一些事件或访问。 进一步查询注册商以确定何时注册域名。 生成一个对象,其中包含访问计数的表示和每个域名注册后的年龄。 客户端可以与对象进行交互,以探索与高访问次数和最近注册相关联的域名的表示。 一旦确定给定的域名是可疑的,就可以生成一个规则来阻止对域名的访问。

Patent Agency Ranking