Invention Grant
- Patent Title: Validating network security alerting pipeline using synthetic network security events
-
Application No.: US17587340Application Date: 2022-01-28
-
Publication No.: US12160442B2Publication Date: 2024-12-03
- Inventor: Paul Hutelmyer , Caleb Walch
- Applicant: Target Brands, Inc.
- Applicant Address: US MN Minneapolis
- Assignee: Target Brands, Inc.
- Current Assignee: Target Brands, Inc.
- Current Assignee Address: US MN Minneapolis
- Agency: Barnes & Thornburg LLP
- Main IPC: H04L9/40
- IPC: H04L9/40

Abstract:
A system for testing an alerting pipeline of a security network can include a synthetics computing device, a network analysis computing device, and an alerting computing device. The synthetics computing device can generate a synthetic event, a non-malicious version of an actual security event, to test one or more detection signatures of the security network and inject the synthetic event into a network log of events. The network analysis computing device can scan the network log of events, identify an event that triggers a detection signature of the security network, identify the event as the injected synthetic event, and generate a notification identifying the synthetic event and an associated detection signature triggered in response to the injected synthetic event. The alerting computing device can receive the notification and flag the synthetic event. The synthetics computing device can also validate the flagged synthetic event.
Public/Granted literature
- US20220311795A1 VALIDATING NETWORK SECURITY ALERTING PIPELINE USING SYNTHETIC NETWORK SECURITY EVENTS Public/Granted day:2022-09-29
Information query