Expel has filed a patent for a system and method to accelerate threat mitigation of malicious cybersecurity activity. The system identifies cybersecurity events, generates proposed remediation actions, assesses them against subscriber criteria, constructs API requests, and executes them to mitigate cybersecurity threats. The patent aims to enhance the efficiency and effectiveness of threat mitigation processes. GlobalData’s report on Expel gives a 360-degree view of the company including its patenting strategy. Buy the report here.
According to GlobalData’s company profile on Expel, AI-assisted threat classification was a key innovation area identified from patents. Expel's grant share as of September 2023 was 53%. Grant share is based on the ratio of number of grants to total number of patents.
The patent filed is for a system and method for accelerating threat mitigation in cybersecurity
A recently filed patent (Publication Number: US20230300166A1) describes a computer-implemented method for accelerating threat mitigation of malicious cybersecurity activity through a cybersecurity event detection and response service. The method involves several steps to identify and respond to cybersecurity events associated with third-party security applications or services of a subscriber.
The method begins by identifying a cybersecurity event and generating a service-proposed threat mitigation action based on identifying the event as malicious activity. This proposed action includes a threat mitigation action type and a compromised digital asset associated with the event. The method then automatically assesses the proposed action against the subscriber's automated mitigation criteria to confirm its suitability. If confirmed, a compromised asset application programming interface (API) request is automatically constructed, which includes identifying the security device associated with the event and encoding the API request based on the device's protocols. Finally, the compromised asset API request is executed to resolve or mitigate the cybersecurity threat associated with the compromised digital asset.
The patent also describes various specific scenarios and actions that can be taken based on the threat mitigation action type and the compromised digital asset. For example, the method can involve terminating network connections with a compromised network host, disabling a compromised user account, terminating a compromised cloud computing environment, or disabling/modifying a compromised cloud access key.
Additionally, the method allows subscribers to enroll in distinct automated mitigation action types and specify authorized or prohibited digital assets for each type. A subscriber-specific mitigation context data structure is generated based on these specifications.
The patent further describes features such as automatically computing probable threat types, generating remediation actions based on threat severity levels, identifying critical assets, generating remediation action reversal requests, and displaying automated mitigations user interfaces.
Overall, this patent presents a computer-implemented method that aims to accelerate threat mitigation in cybersecurity through a detection and response service. By automating the assessment, construction, and execution of threat mitigation actions, the method seeks to enhance the efficiency and effectiveness of cybersecurity measures.
To know more about GlobalData’s detailed insights on Expel, buy the report here.
Data Insights
From
The gold standard of business intelligence.
Blending expert knowledge with cutting-edge technology, GlobalData’s unrivalled proprietary data will enable you to decode what’s happening in your market. You can make better informed decisions and gain a future-proof advantage over your competitors.