Palantir Technologies Inc.
CYBERSECURITY EVENT DETECTION SYSTEM AND METHOD
Last updated:
Abstract:
A method, performed by one or more processors, includes: receiving an indication of a desired modification to a cybersecurity event detector that is being contemporaneously used for the detection of potential cybersecurity events in a production environment; modifying, in a sandbox environment, the cybersecurity event detector based on the indication of the desired modification to the cybersecurity event detector; and for each system event in a set of system events, determining, in the sandbox environment, whether the respective system event is indicative of a potential cybersecurity event using the modified cybersecurity event detector. Related apparatus are also disclosed.
Status:
Application
Type:
Utility
Filling date:
25 Sep 2020
Issue date:
1 Apr 2021