SecureWorks Corp.
System and method for vendor agnostic automatic supplementary intelligence propagation

Last updated:

Abstract:

An information handling system includes a storage and a processor. The storage is configured to store network activity logs from a first client system and a second client system. The processor is configured to receive a security alert from the first client system, analyze the security alert to obtain a plurality of indicators, utilize the supplementary indicators to build a statistical security model, and analyze activity on the second client system using the statistical security model to identify an additional security events.

Status:
Grant
Type:

Utility

Filling date:

2 May 2017

Issue date:

26 Nov 2019