WO2026126095 - TECHNIQUES FOR CYBERSECURITY THREAT DETECTION UTILIZING SENSOR-BASED AGGREGATED RUNTIME EXECUTION DATA

National phase entry is expected:
Publication Number WO/2026/126095
Publication Date 18.06.2026
International Application No. PCT/IB2025/062631
International Filing Date 09.12.2025
Title **
[English] TECHNIQUES FOR CYBERSECURITY THREAT DETECTION UTILIZING SENSOR-BASED AGGREGATED RUNTIME EXECUTION DATA
[French] TECHNIQUES DE DÉTECTION DE MENACE DE CYBERSÉCURITÉ À L'AIDE DE DONNÉES D'EXÉCUTION AGRÉGÉES BASÉES SUR UN CAPTEUR
Applicants **
WIZ, INC.
Inventors
LANDE BLAU, Amir
AMINOV, Michael
NEMTSOV, Arik
REITBLAT, Udi
YAKOV, Shahar
DORON, Jonathan
PELLER, Eliad
DE LEON, Gal
Priority Data
18/974,156   09.12.2024   US
Application details
Total Number of Claims/PCT *
Number of Independent Claims *
Number of Priorities *
Number of Multi-Dependent Claims *
Number of Drawings *
Pages for Publication *
Number of Pages with Drawings *
Pages of Specification *
*
Number of Office Actions *
*
International Searching Authority
*
Recordal of a Change of the Applicant's Name/Address
*
Type of Assignment
*
Applicant's Legal Status
*
*
*
*
*
*
Entry into National Phase under
*
Patent Delivery
*
译文

* The data is based on automatic recognition. Please verify and amend if necessary.

** IP-Coster compiles data from publicly available sources. If this data includes your personal information, you can contact us to request its removal.

Quotation for National Phase entry

Country StagesTotal
China Filing, Examination, Granting2221
EPO Filing, Examination, Granting12750
Japan Filing, Examination, Granting2215
South Korea Filing, Examination, Granting2265
USA Filing, Examination, Granting4740
MasterCard Visa
Total: 24,191
Contact Us
Abstract[English] A system and method for detecting cybersecurity threats in a cloud computing environment utilizing sensor based runtime execution data is presented. The method includes receiving aggregated runtime execution data from a runtime sensor deployed on a resource in a cloud computing environment, wherein the runtime sensor is configured to aggregate runtime execution data; generating an event log based on the aggregated runtime execution data, each event in the event log generated by extracting data from the aggregated runtime execution data; detecting in the event log a software application identifier; and initiating inspection of the resource in response to determining that a software application corresponding to the software application identifier was not previously detected on the resource.[French] L'invention concerne un système et un procédé de détection de menaces de cybersécurité dans un environnement informatique en nuage utilisant des données d'exécution basées sur un capteur. Le procédé consiste à recevoir des données d'exécution agrégées provenant d'un capteur d'exécution déployé sur une ressource dans un environnement informatique en nuage, le capteur d'exécution étant configuré pour agréger des données d'exécution ; générer un journal d'événements sur la base des données d'exécution agrégées, chaque événement dans le journal d'événements étant généré par extraction de données à partir des données d'exécution agrégées ; détecter dans le journal d'événements un identifiant d'application logicielle ; et initier l'inspection de la ressource en réponse à la détermination du fait qu'une application logicielle correspondant à l'identifiant d'application logicielle n'a pas été précédemment détectée sur la ressource.