WO2023144805 - TECHNIQUES FOR CLOUD DETECTION AND RESPONSE FROM CLOUD LOGS UTILIZING A SECURITY GRAPH

National phase entry:
Publication Number WO/2023/144805
Publication Date 03.08.2023
International Application No. PCT/IB2023/050848
International Filing Date 31.01.2023
Title **
[English] TECHNIQUES FOR CLOUD DETECTION AND RESPONSE FROM CLOUD LOGS UTILIZING A SECURITY GRAPH
[French] TECHNIQUES DE DÉTECTION ET DE RÉPONSE DANS LE NUAGE À PARTIR DE JOURNAUX DANS LE NUAGE UTILISANT UN GRAPHE DE SÉCURITÉ
Applicants **
WIZ, INC.
Inventors
LUTTWAK, Ami
COSTICA, Yinon
REZNIK, Roy
PISHA, George
MOYSI, Liran
SCHINDEL, Alon
Priority Data
63/267,368   31.01.2022   US
Application details
Total Number of Claims/PCT *
Number of Independent Claims *
Number of Priorities *
Number of Multi-Dependent Claims *
Number of Drawings *
Pages for Publication *
Number of Pages with Drawings *
Pages of Specification *
*
Number of Office Actions *
*
International Searching Authority
*
Recordal of a Change of the Applicant's Name/Address
*
Type of Assignment
*
Applicant's Legal Status
*
*
*
*
*
*
Entry into National Phase under
*
Patent Delivery
*
Translation

* The data is based on automatic recognition. Please verify and amend if necessary.

** IP-Coster compiles data from publicly available sources. If this data includes your personal information, you can contact us to request its removal.

Quotation for National Phase entry

Country StagesTotal
China Filing, Examination, Granting2216
EPO Filing, Examination, Granting13598
Japan Filing, Examination, Granting2276
South Korea Filing, Examination, Granting2403
USA Filing, Examination, Granting4740
MasterCard Visa
Total: 25,233

The term for entry into the National Phase has expired. This quotation is for informational purposes only

Contact Us
Abstract[English] A system and method for detecting a cloud detection and response (CDR) event from a cloud log. The method includes detecting an identifier of a cloud entity in a cloud log, wherein the cloud log includes a plurality of records generated by a cloud computing environment; detecting a node in a security graph based on the identifier of the cloud entity, wherein the security graph includes a representation of the cloud computing environment; generating a CDR event in response to determining from the security graph that the first node is associated with a cybersecurity threat; and initiating a mitigation action based on the cybersecurity threat.[French] L'invention concerne un système et un procédé de détection d'un événement de détection et de réponse dans le nuage (CDR) à partir d'un journal dans le nuage. Le procédé comprend la détection d'un identifiant d'une entité dans le nuage dans un journal dans le nuage, le journal dans le nuage comprenant une pluralité d'enregistrements générés par un environnement d'informatique en nuage; la détection d'un nœud dans un graphe de sécurité sur la base de l'identifiant de l'entité dans le nuage, le graphe de sécurité comprenant une représentation de l'environnement d'informatique en nuage; la génération d'un événement CDR en réponse à la détermination, à partir du graphe de sécurité, que le premier nœud est associé à une menace de cybersécurité; et l'initiation d'une action d'atténuation sur la base de la menace de cybersécurité.

Rejoining the server...