MALICIOUS ACTIVITY DETECTION, VALIDATION, AND REMEDIATION IN VIRTUALIZED FILE SERVERS

    公开(公告)号:US20230289443A1

    公开(公告)日:2023-09-14

    申请号:US17693206

    申请日:2022-03-11

    Applicant: NUTANIX, INC.

    CPC classification number: G06F21/565 G06F11/1464 G06F2201/84 G06F2221/034

    Abstract: Examples of file analytics systems are described that may obtain metadata data and events data from a virtualized file server. The file analytics systems may detect one or more events from the events data matching a criteria indicating malicious activity. The file analytics systems may validate the detection of malicious activity. The validation may be performed by comparing the file type, such as the MIME type, of sample files before and after the suspected malicious activity. The systems may recover a share of the distributed file server including the one or more affected files by replacing the one or more affected files with stored versions of the one or more affected files from a snapshot of the share taken prior to the detected malicious activity.

    File analytics systems including examples providing metrics adjusted for application operation

    公开(公告)号:US12248434B2

    公开(公告)日:2025-03-11

    申请号:US17304086

    申请日:2021-06-14

    Applicant: NUTANIX, INC.

    Abstract: Examples of file analytics systems are described that may obtain event data from a virtualized file server. The event data may be aggregated and/or filtered to provide metrics which may be adjusted based on the operation of an application used to accomplish a user action. For example, actions relating to an application's temporary file handling may be aggregated and/or excluded when reporting metrics for the virtualized file server. To facilitate reporting of metrics, the file analytics system may provide a lineage index storing an association between files related through operation of the application used to accomplish the user action.

    FILE ANALYTICS SYSTEMS AND METHODS INCLUDING RECEIVING AND PROCESSING FILE SYSTEM EVENT DATA IN ORDER

    公开(公告)号:US20220342866A1

    公开(公告)日:2022-10-27

    申请号:US17304062

    申请日:2021-06-14

    Applicant: NUTANIX, INC.

    Abstract: Examples of file analytics systems are described that may obtain event data from a virtualized file server. The event data may be aggregated and/or filtered to provide metrics. The file analytics system may obtain event data from the virtualized file server. The file analytics system may process multiple streams of event data in parallel by separating messages corresponding to the event data message topic into multiple partition pipelines. To avoid processing events related to a particular file out of chronological order, the analytics tool may distribute events for the particular file to the same message topic partition pipeline.

    Malicious activity detection, validation, and remediation in virtualized file servers

    公开(公告)号:US12182264B2

    公开(公告)日:2024-12-31

    申请号:US17693206

    申请日:2022-03-11

    Applicant: NUTANIX, INC.

    Abstract: Examples of file analytics systems are described that may obtain metadata data and events data from a virtualized file server. The file analytics systems may detect one or more events from the events data matching a criteria indicating malicious activity. The file analytics systems may validate the detection of malicious activity. The validation may be performed by comparing the file type, such as the MIME type, of sample files before and after the suspected malicious activity. The systems may recover a share of the distributed file server including the one or more affected files by replacing the one or more affected files with stored versions of the one or more affected files from a snapshot of the share taken prior to the detected malicious activity.

    File analytics systems and methods including receiving and processing file system event data in order

    公开(公告)号:US12242455B2

    公开(公告)日:2025-03-04

    申请号:US17304062

    申请日:2021-06-14

    Applicant: NUTANIX, INC.

    Abstract: Examples of file analytics systems are described that may obtain event data from a virtualized file server. The event data may be aggregated and/or filtered to provide metrics. The file analytics system may obtain event data from the virtualized file server. The file analytics system may process multiple streams of event data in parallel by separating messages corresponding to the event data message topic into multiple partition pipelines. To avoid processing events related to a particular file out of chronological order, the analytics tool may distribute events for the particular file to the same message topic partition pipeline.

Patent Agency Ranking