-
公开(公告)号:US11973873B2
公开(公告)日:2024-04-30
申请号:US17876870
申请日:2022-07-29
Applicant: Zscaler, Inc.
Inventor: Pooja Deshmukh , Siva Udupa
IPC: G06F7/04 , G06F21/55 , G06F21/62 , G06F21/64 , G06F40/284 , H04L9/32 , H04L9/40 , H04W12/02 , H04W12/80
CPC classification number: H04L9/3213 , G06F21/552 , G06F21/6218 , G06F21/6263 , G06F21/64 , G06F40/284 , H04L9/3247 , H04L63/0428 , H04L63/1416 , H04L63/30 , H04W12/02 , H04W12/80
Abstract: Systems and methods of Exact Data Matching (EDM) include receiving customer specific sensitive data for a customer, wherein the customer specific sensitive data are converted into a plurality of tokens; receiving a configuration for exact data matching of the plurality of tokens; performing inline monitoring of a user associated with the customer; detecting a presence of one or more tokens of the plurality of tokens based on the inline monitoring; and, responsive to the detecting, performing an action based on the configuration.
-
公开(公告)号:US12238070B2
公开(公告)日:2025-02-25
申请号:US17367760
申请日:2021-07-06
Applicant: Zscaler, Inc.
Inventor: Pooja Deshmukh , Leslie Smith , William Fehring , Kanti Varanasi , John A. Chanak
IPC: H04L9/40 , G06F9/54 , H04L9/00 , H04L9/08 , H04L9/14 , H04L9/30 , H04L9/32 , H04L67/01 , H04L67/1021 , H04L61/4511 , H04L61/59
Abstract: Systems and methods include, responsive to determining a user can access an application via a cloud-based system, wherein the application is in one of a public cloud, a private cloud, and an enterprise network, and wherein the user is remote over the Internet, obtaining a predetermined inspection profile for the user with the inspection profile including a plurality of rules evaluated in an order; performing inspection of the access using the plurality of rules in the order; and responsive to results of any of the plurality of rules, one or more of monitoring, allowing, blocking, and redirecting the access, via the cloud-based system.
-
公开(公告)号:US20210326460A1
公开(公告)日:2021-10-21
申请号:US16996965
申请日:2020-08-19
Applicant: Zscaler, Inc.
Inventor: Zhifeng Zhang , Arun Bhallamudi , Pooja Deshmukh
Abstract: Systems and methods include obtaining an expression for a Data Loss Prevention (DLP) engine, wherein the expression includes one or more DLP dictionaries that evaluate to a score for comparison with a corresponding threshold and one or more logical operators used to combine an evaluation of the one or more DLP dictionaries; storing the expression in a database associated with a DLP service; monitoring traffic from one or more users; evaluating the traffic using the DLP engine and the expression; and determining a DLP trigger based on a result of the expression that is a logical TRUE.
-
公开(公告)号:US12041089B2
公开(公告)日:2024-07-16
申请号:US16950136
申请日:2020-11-17
Applicant: Zscaler, Inc.
Inventor: Pooja Deshmukh , Iris Gao , Jasbir S. Kaushal , Sarthak Saxena
IPC: H04L9/40 , H04L43/045 , H04L43/06 , H04L67/562
CPC classification number: H04L63/20 , H04L43/045 , H04L43/06 , H04L63/145 , H04L67/562
Abstract: Systems and methods include, responsive to a scan by the CASB system of a plurality of users associated with a tenant in a Software-as-a-Service (SaaS) application where the scan includes identifying malware in content in the SaaS application and performing Data Loss Prevention (DLP) in the content in the SaaS application, maintaining records associated with a plurality of incidents for the malware and the DLP; providing a User Interface (UI) for the tenant including an analytics view with a plurality of summary tiles including visualizations of the plurality of incidents for the malware and the DLP for the tenant; and providing the UI for the tenant including a table listing any of the plurality of incidents for the malware and the DLP for the tenant, including any of unique data objects, unique users internal to the tenant, and unique external entities, associated with the plurality of incidents.
-
公开(公告)号:US20230019448A1
公开(公告)日:2023-01-19
申请号:US17844427
申请日:2022-06-20
Applicant: Zscaler, Inc.
Inventor: Pooja Deshmukh , Amit Banker , Kanti Varanasi , John A. Chanak , William Fehring , Nishant Gupta
IPC: H04L9/40
Abstract: Systems and methods include, responsive to security research identifying a zero-day Common Vulnerabilities and Exposure (CVE), receiving the associated signatures of the zero-day CVE; responsive to determining a user can access an application via a cloud-based system, wherein the application is in one of a public cloud, a private cloud, and an enterprise network, and wherein the user is remote over the Internet, obtaining an inspection profile for the user with the inspection profile including a plurality of rules; performing inspection of transactions after the access using the plurality of rules including a rule for identifying the zero-day CVE; and responsive to results of any of the plurality of rules, one or more of monitoring, allowing, blocking, and redirecting the access, via the cloud-based system.
-
公开(公告)号:US11455407B2
公开(公告)日:2022-09-27
申请号:US16996965
申请日:2020-08-19
Applicant: Zscaler, Inc.
Inventor: Zhifeng Zhang , Arun Bhallamudi , Pooja Deshmukh
Abstract: Systems and methods include obtaining an expression for a Data Loss Prevention (DLP) engine, wherein the expression includes one or more DLP dictionaries that evaluate to a score for comparison with a corresponding threshold and one or more logical operators used to combine an evaluation of the one or more DLP dictionaries; storing the expression in a database associated with a DLP service; monitoring traffic from one or more users; evaluating the traffic using the DLP engine and the expression; and determining a DLP trigger based on a result of the expression that is a logical TRUE.
-
公开(公告)号:US20220116397A1
公开(公告)日:2022-04-14
申请号:US17102688
申请日:2020-11-24
Applicant: Zscaler, Inc.
Inventor: Pooja Deshmukh , Narinder Paul , Naresh Kumar , Santhosh Kumar , Sravani Manukonda , Vijay Bulusu
Abstract: Systems and methods include obtaining a profile for an application, wherein the profile includes one or more tenants, rules for use of the application by the one or more tenants, and users for the rules; monitoring a user of a tenant of the one or more tenants inline via a node in a cloud-based system; identifying an application of the one or more applications based on the monitoring and associated rules for the user; and enforcing the associated rules for the user for the application.
-
公开(公告)号:US11863674B2
公开(公告)日:2024-01-02
申请号:US17132499
申请日:2020-12-23
Applicant: Zscaler, Inc.
Inventor: Balakrishna Bayar , Arun Bhallamudi , Srikanth Devarajan , Siva Udupa , Pooja Deshmukh
IPC: G06F7/04 , H04L9/32 , H04L9/40 , G06F21/64 , G06F21/62 , H04W12/02 , G06F21/55 , H04W12/80 , G06F40/284
CPC classification number: H04L9/3213 , G06F21/552 , G06F21/6218 , G06F21/6263 , G06F21/64 , G06F40/284 , H04L9/3247 , H04L63/0428 , H04L63/1416 , H04L63/30 , H04W12/02 , H04W12/80
Abstract: Systems and methods of Exact Data Matching (EDM) for identifying related tokens in data content using structured signature data implemented in a cloud-based system receiving data sets and customer configuration from a customer, wherein the data sets include customer specific sensitive data from a structured data source with each token represented by a hash value and the customer configuration includes one or more primary keys for a plurality of records in the data sets; distributing the data sets and the customer configuration to a plurality of nodes in the cloud-based system; performing monitoring of content between a client of the customer and an external network; detecting a presence of a plurality of tokens associated with a record in the customer specific sensitive data based on the monitoring; and performing a policy-based action in the cloud-based system based on the detecting.
-
公开(公告)号:US11671433B2
公开(公告)日:2023-06-06
申请号:US16853862
申请日:2020-04-21
Applicant: Zscaler, Inc.
Inventor: Narinder Paul , Arun Bhallamudi , James Tan , Frank Zhang , Pooja Deshmukh
CPC classification number: H04L63/1408 , H04L9/3236 , H04L63/166
Abstract: A cloud-based security system includes a plurality of enforcement nodes connected to one another; a central authority connected to the plurality of enforcement nodes; and a Data Loss Prevention (DLP) service executed between the plurality of enforcement nodes, wherein the DLP service includes one or more DLP rules based on one or more DLP engines for a tenant, and wherein, for the DLP service, a first enforcement node is configured to monitor traffic of a user of the tenant, detect a DLP rule violation based on the one or more DLP rules, and forward DLP incident information to a second enforcement node, and the second enforcement node is configured to transmit the DLP incident information to a server for the tenant, including both DLP triggering content that cause the DLP rule violation and DLP scan metadata.
-
公开(公告)号:US20230018809A1
公开(公告)日:2023-01-19
申请号:US17949522
申请日:2022-09-21
Applicant: Zscaler, Inc.
Inventor: Pooja Deshmukh
IPC: H04L9/40
Abstract: Systems and methods include, providing a UI for a tenant to input one or more malware and DLP rules, and trusted user exceptions; responsive to a scan by the CASB system of a plurality of users associated with a tenant in a SaaS application where the scan includes identifying malware in content in the SaaS application and performing DLP in the content in the SaaS application based on the one or more malware and DLP rules and trusted user exceptions, maintaining records associated with a plurality of incidents for the malware and the DLP; and providing the UI for the tenant including an analytics view with a plurality of summary tiles including visualizations of the plurality of incidents for the malware and DLP for the tenant and a table listing any of the plurality of incidents for the malware and the DLP for the tenant.
-
-
-
-
-
-
-
-
-