SecureWorks Corp.
System and method for vendor agnostic automatic supplementary intelligence propagation
Last updated:
Abstract:
An information handling system includes a storage and a processor. The storage is configured to store network activity logs from a first client system and a second client system. The processor is configured to receive a security alert from the first client system, analyze the security alert to obtain a plurality of indicators, utilize the supplementary indicators to build a statistical security model, and analyze activity on the second client system using the statistical security model to identify an additional security events.
Status:
Grant
Type:
Utility
Filling date:
2 May 2017
Issue date:
26 Nov 2019