Abstract: Methods, systems, and apparatus, including computer programs encoded on computer storage media, for computerized security platforms. In some implementations, the security platform obtains a resource transmitted from a first external system to a second external system in response to the first external system receiving a request from a client device to transmit the resource to the second external system. The security platform determines a classification of the resource according to a policy applied to the resource by the first external system. In response to determining the classification of the resource, the security platform determines whether to allow the resource to be transmitted. Either i) in response to determining that the resource is allowed to be transmitted, the security platform permits the resource to be transmitted, or ii) in response to determining that the resource is not allowed to be transmitted, the security platform prevents the resource from being transmitted.
Abstract: Methods, systems, and apparatus, including computer programs encoded on computer storage media, for a visibility application. In some implementations, a computer system obtains data transmitted between a client device and a remote platform in a transaction and identifies at least one correlation key in the data. Based on the correlation key, the computer system associates the transaction with one or more other transactions having the correlation key. The computer system presents a user interface in which detected traffic associated with multiple different application programming interfaces (APIs) is grouped based on a common platform of the multiple different APIs and the computer system includes a knowledge graph indicating the association between the transaction and the one or more other transactions.
Abstract: Some aspects of the present disclosure relate to a system that uses source connectors to integrate with various user-defined data sources containing proprietary information. The source connectors read data files from the user-defined data sources and send the data files to an input classifier, which associates each data file with a corresponding object extraction pipeline based on a file type and/or encoding format of the data file. The system uses multiple object extraction pipelines to extract representational data objects from the data files. The representational data objects are then processed by various fingerprinting modules of the system. These fingerprinting modules are configured to generate a set of multimodal fingerprints for each data file based on the representational data object(s) associated with the data file. The multimodal fingerprints are then indexed/stored in a database for later use.