ZeroFOX. has been granted a patent for a system that enables unified cyberthreat intelligence searching. The system includes a data lake with multiple search clusters, allowing access to curated threat intelligence and raw communication data, facilitating efficient analysis and investigation of cyberthreats. GlobalData’s report on ZeroFOX gives a 360-degree view of the company including its patenting strategy. Buy the report here.

According to GlobalData’s company profile on ZeroFOX, Synthetic data was a key innovation area identified from patents. ZeroFOX's grant share as of June 2024 was 73%. Grant share is based on the ratio of number of grants to total number of patents.

Unified cyberthreat intelligence searching system and methods

Source: United States Patent and Trademark Office (USPTO). Credit: ZeroFOX Inc

The granted patent US12008112B2 outlines a sophisticated system for unified cyberthreat intelligence searching, designed to enhance the efficiency of threat analysis and investigation. Central to this system is a data lake that comprises multiple search clusters, each providing access to distinct databases. The first search cluster focuses on curated threat intelligence, while the second cluster accesses raw conversation data from various communication channels, including Telegram, Discord, and the Dark Web. Analysts can interact with the system through a graphical user interface, allowing them to input data, modify intelligence reports, and transmit curated threat reports back to the first search cluster. The server component of the system processes queries from client endpoints, parsing them for keywords and generating tailored search requests for each cluster, ultimately producing intelligence cards that summarize the findings.

Additionally, the system includes provisions for filtering search results and accessing a range of data types, such as compromised credentials and indicators of compromise, which may include IP addresses and malware hashes. The architecture is designed to facilitate seamless communication between the analyst devices and the server, ensuring that the generated intelligence cards can be displayed and selected for further investigation. The patent also specifies that the search clusters can be implemented using Elasticsearch technology, enhancing the system's capability to handle large volumes of data efficiently. Overall, this patent presents a comprehensive framework for improving cyberthreat intelligence operations, enabling analysts to conduct thorough investigations based on curated and raw data sources.

To know more about GlobalData’s detailed insights on ZeroFOX, buy the report here.

Data Insights

From

The gold standard of business intelligence.

Blending expert knowledge with cutting-edge technology, GlobalData’s unrivalled proprietary data will enable you to decode what’s happening in your market. You can make better informed decisions and gain a future-proof advantage over your competitors.

GlobalData

GlobalData, the leading provider of industry intelligence, provided the underlying data, research, and analysis used to produce this article.

GlobalData Patent Analytics tracks bibliographic data, legal events data, point in time patent ownerships, and backward and forward citations from global patenting offices. Textual analysis and official patent classifications are used to group patents into key thematic areas and link them to specific companies across the world’s largest industries.