Palantir Technologies Inc.
CYBERSECURITY EVENT DETECTION SYSTEM AND METHOD

Last updated:

Abstract:

A method, performed by one or more processors, includes: receiving an indication of a desired modification to a cybersecurity event detector that is being contemporaneously used for the detection of potential cybersecurity events in a production environment; modifying, in a sandbox environment, the cybersecurity event detector based on the indication of the desired modification to the cybersecurity event detector; and for each system event in a set of system events, determining, in the sandbox environment, whether the respective system event is indicative of a potential cybersecurity event using the modified cybersecurity event detector. Related apparatus are also disclosed.

Status:
Application
Type:

Utility

Filling date:

25 Sep 2020

Issue date:

1 Apr 2021