US 11,985,144 B2
Browser extension for cybersecurity threat intelligence and response
Edward Hinkle, Frederick, MD (US); Mashell Rodriguez, Joshua Tree, CA (US); Marika Chauvin, New Orleans, LA (US); Daniel Cole, Reston, VA (US); Andrew Pendergast, Columbia, MD (US); and Kathryn Grayson Nanz, Black Mountain, NC (US)
Assigned to ThreatConnect, Inc., Arlington, VA (US)
Filed by ThreatConnect, Inc., Arlington, VA (US)
Filed on Jun. 25, 2021, as Appl. No. 17/358,226.
Prior Publication US 2022/0417263 A1, Dec. 29, 2022
This patent is subject to a terminal disclaimer.
Int. Cl. H04L 9/40 (2022.01)
CPC H04L 63/1416 (2013.01) 17 Claims
OG exemplary drawing
 
1. A system for implementing a browser extension for cyber threat intelligence and response, comprising:
a non-transitory memory configured to store instructions; and
one or more hardware processors coupled to the non-transitory memory and configured to read the instructions from the non-transitory memory to cause the system to perform operations comprising:
receiving, in a sandbox of a browser by a browser extension, a selection of at least a first indicator of compromise of the at least one of the indicator of compromise of at least scanned part of a web page;
displaying, in the browser extension, one or more orchestrated responses to be performed on the selected first indicator of compromise;
receiving, in the browser extension, a selection of at least a first orchestrated response of the one or more orchestrated responses;
transmitting, by the browser extension, the selected first orchestrated response to be performed on the selected first indicator of compromise to the cloud-based enrichment and analysis of cybersecurity threat intelligence system;
receiving, in the browser extension from the cloud-based enrichment and analysis of cybersecurity threat intelligence system, a response including a result of the selected first orchestrated response; and
displaying, in the browser extension, the result of the selected first orchestrated response, wherein the result includes a status of the deployment of selected first orchestrated response, an ability to pause deployment of selected first orchestrated response, and an ability to redeploy the selected first orchestrated response.