发明名称 Lateral account mapping
摘要 Systems and methods of correlating accounts among a plurality of network assets using account lateral movement data is presented in the context of network security. In one embodiment a plurality of authentication audit logs are received from a plurality of assets; the plurality of authentication audit logs are correlated; and a notification is generated based on a comparison of correlation results and a database of permitted account associations.
申请公布号 US2016255114(A1) 申请公布日期 2016.09.01
申请号 US201514633100 申请日期 2015.02.26
申请人 Rapid7, Inc. 发明人 Hathaway Matthew Robert;Adams Samuel;Myers Jeff;Torance Steven
分类号 H04L29/06;G06F21/62 主分类号 H04L29/06
代理机构 代理人
主权项 1. A method of monitoring a network, the method comprising: receiving, via a processing module, a plurality of authentication audit logs to assist in generating account lateral movement mapping data from a plurality of assets; correlating, via the processing module, the plurality of authentication audit logs; and generating, via the processing module, a notification based on a comparison of correlation results and a database of permitted associations among multiple accounts used by a single user.
地址 Boston MA US