Patents Assigned to Expel, Inc.
  • Patent number: 12647434
    Abstract: A system, method, and computer-implemented method includes generating a security alert for a subscriber, executing an automated investigation protocol for the security alert, obtaining, in response to executing a first plurality of computer-executable investigation queries and a second plurality of computer-executable investigation queries, a corpus of investigation findings data indicative of whether the security alert corresponds to a security threat or a benign security alert, and displaying, using a graphical user interface, the security alert in association with the corpus of investigation findings data.
    Type: Grant
    Filed: August 20, 2025
    Date of Patent: June 2, 2026
    Assignee: Expel, Inc.
    Inventors: Malachi Woodlee, Brady Stouffer
  • Publication number: 20260106896
    Abstract: A system and method for accelerating a disposition of non-malicious electronic communications includes extracting one or more corpora of feature vectors from an electronic communication based on providing the electronic communication as input to a feature extractor; computing, by a machine learning-based electronic communication classification model, an electronic communication-type classification inference that includes a probability of the electronic communication being of the target non-malicious electronic communication type in response to the machine learning-based electronic communication classification model receiving the one or more corpora of feature vectors; attributing a classification label of the target non-malicious electronic communication type to the electronic communication based on the probability of the electronic communication-type classification inference satisfying a minimum electronic communication classification threshold; and automatically routing a security alert associated with the
    Type: Application
    Filed: December 16, 2025
    Publication date: April 16, 2026
    Applicant: Expel, Inc.
    Inventors: Elisabeth Weber, Jane Hung
  • Publication number: 20260105148
    Abstract: A system, method, and computer-program product includes generating a polling task that is configured to retrieve raw event data of a subscriber that occurred during a target time span from a third-party security service, computing an optimal polling frequency control value for the polling task in response to generating the polling task, partitioning the target time span into a plurality of distinct sub-intervals of time based on the optimal polling frequency control value computed for the polling task, automatically transmitting, to an application programming interface endpoint of the third-party security service, a plurality of distinct network requests to optimally perform the polling task, receiving the raw event data of the subscriber from the third-party security service that occurred during the target time span in response to transmitting the plurality of distinct network request, and generating one or more security alerts in response to processing the raw event data.
    Type: Application
    Filed: December 15, 2025
    Publication date: April 16, 2026
    Applicant: Expel, Inc.
    Inventors: Anders Blair, Matthew Kracht, Aaron Fermin, Sarah Taurchini, Carter King, David Casagrande
  • Patent number: 12598199
    Abstract: A system, method, and computer-program product includes displaying, via a data integration building user interface, a plurality of integration-identifying user interface input elements configured to receive one or more strings of text for specifying a set of integration identification parameters that characterize an in-development security integration for a third-party security service, displaying, via the data integration building user interface, a signal-specific data mapping container based on receiving an input selecting a signal mapping addition control button of the data integration building user interface, displaying, via the data integration building user interface, a raw event simulation container based on receiving an input selecting a simulation addition control button of the data integration building user interface, and displaying, via the data integration building user interface, an integration deployment control element that, when operated, transitions the in-development security integration to
    Type: Grant
    Filed: May 14, 2025
    Date of Patent: April 7, 2026
    Assignee: Expel, Inc.
    Inventors: Dan Whalen, Patrick Edgett, Issa Hafiri, Ashwin Ramesh, Andrew Pritchett, Sam Chiou, Joseph Rodriguez, Dave Walk, Max Timmons, Matt Dean
  • Publication number: 20260081934
    Abstract: A system, method, and computer-implemented method includes generating a security alert for a subscriber, executing an automated investigation protocol for the security alert, obtaining, in response to executing a first plurality of computer-executable investigation queries and a second plurality of computer-executable investigation queries, a corpus of investigation findings data indicative of whether the security alert corresponds to a security threat or a benign security alert, and displaying, using a graphical user interface, the security alert in association with the corpus of investigation findings data.
    Type: Application
    Filed: August 20, 2025
    Publication date: March 19, 2026
    Applicant: Expel, Inc.
    Inventors: Malachi Woodlee, Brady Stouffer
  • Patent number: 12579259
    Abstract: A system and method for generating event-specific handling instructions for accelerating a threat mitigation of a cybersecurity event includes identifying a cybersecurity event; generating a cybersecurity event digest based on the cybersecurity event, computing a cybersecurity hashing-based signature of the cybersecurity event based on the cybersecurity event digest; searching, based on the distinct cybersecurity hashing-based signature of the cybersecurity event, an n-dimensional space comprising a plurality of historical cybersecurity event hashing-based signatures; returning one or more historical cybersecurity events or historical cybersecurity alerts homogeneous to the cybersecurity event based on the search; deriving one or more cybersecurity event-specific handling actions for the cybersecurity event based on identifying a threat handling action corresponding to each of the one or more historical cybersecurity events or historical cybersecurity alerts homogeneous to the cybersecurity event; and executi
    Type: Grant
    Filed: May 15, 2023
    Date of Patent: March 17, 2026
    Assignee: Expel, Inc.
    Inventors: Peter Silberman, Dan Whalen, Matt Berninger, Paul Diebold, Ben Kawecki
  • Publication number: 20260039473
    Abstract: A system and method for using digitally signed web tokens to securely share sensitive data includes identifying an API request that includes an authorization header comprising authentication data; assessing the authentication data of the API request against a corpus of valid authentication data; identifying the authentication data as valid authentication data and a target entity that corresponds to the authentication data; obtaining a set of permissions associated with the target entity; generating a digitally signed protobuf web token that includes a representation of the target entity and a representation of the set of permissions associated with the target entity; and based on the generation of the digitally signed protobuf web token: adapting the API request to an adapted API request that includes a header component comprising the digitally signed protobuf web token; and transmitting the adapted API request to a target API-processing service.
    Type: Application
    Filed: October 13, 2025
    Publication date: February 5, 2026
    Applicant: Expel, Inc.
    Inventor: Matthew Blasius
  • Patent number: 12531903
    Abstract: A system and method for accelerating a disposition of non-malicious electronic communications includes extracting one or more corpora of feature vectors from an electronic communication based on providing the electronic communication as input to a feature extractor; computing, by a machine learning-based electronic communication classification model, an electronic communication-type classification inference that includes a probability of the electronic communication being of the target non-malicious electronic communication type in response to the machine learning-based electronic communication classification model receiving the one or more corpora of feature vectors; attributing a classification label of the target non-malicious electronic communication type to the electronic communication based on the probability of the electronic communication-type classification inference satisfying a minimum electronic communication classification threshold; and automatically routing a security alert associated with the
    Type: Grant
    Filed: July 10, 2025
    Date of Patent: January 20, 2026
    Assignee: Expel, Inc.
    Inventors: Elisabeth Weber, Jane Hung
  • Patent number: 12530450
    Abstract: A method includes generating a polling task that is configured to retrieve raw event data of a subscriber that occurred during a target time span from a third-party security service, computing an optimal polling frequency control value for the polling task in response to generating the polling task, partitioning the target time span into a plurality of distinct sub-intervals of time based on the optimal polling frequency control value computed for the polling task, automatically transmitting, to an application programming interface endpoint of the third-party security service, a plurality of distinct network requests to optimally perform the polling task, receiving the raw event data of the subscriber from the third-party security service that occurred during the target time span in response to transmitting the plurality of distinct network request, and generating one or more security alerts in response to processing the raw event data.
    Type: Grant
    Filed: February 21, 2025
    Date of Patent: January 20, 2026
    Assignee: Expel, Inc.
    Inventors: Anders Blair, Matthew Kracht, Aaron Fermin, Sarah Taurchini, Carter King, David Casagrande
  • Publication number: 20260019431
    Abstract: A system, method, and computer-program product includes obtaining raw event data associated with a subscriber, automatically selecting an automated event ingestion instruction of a plurality of distinct automated event ingestion instructions for processing the raw event data, automatically generating a pre-normalized security event that includes the raw event data in a first structured data object in response to executing the automated event ingestion instruction, automatically transforming the pre-normalized security event to at least one normalized security event, automatically assessing a corpus of computer-executable detection instructions against the at least one normalized security event, generating a security alert based on the at least one normalized security event satisfying a set of alerting conditions of a subject computer-executable detection instruction of the corpus of computer-executable detection instructions, and executing a threat mitigation response that mitigates a security threat associat
    Type: Application
    Filed: July 10, 2025
    Publication date: January 15, 2026
    Applicant: Expel, Inc.
    Inventors: Dan Whalen, Patrick Edgett
  • Publication number: 20250343819
    Abstract: A system and method for accelerating a disposition of non-malicious electronic communications includes extracting one or more corpora of feature vectors from an electronic communication based on providing the electronic communication as input to a feature extractor; computing, by a machine learning-based electronic communication classification model, an electronic communication-type classification inference that includes a probability of the electronic communication being of the target non-malicious electronic communication type in response to the machine learning-based electronic communication classification model receiving the one or more corpora of feature vectors; attributing a classification label of the target non-malicious electronic communication type to the electronic communication based on the probability of the electronic communication-type classification inference satisfying a minimum electronic communication classification threshold; and automatically routing a security alert associated with the
    Type: Application
    Filed: July 10, 2025
    Publication date: November 6, 2025
    Applicant: Expel, Inc.
    Inventors: Elisabeth Weber, Jane Hung
  • Patent number: 12463815
    Abstract: A system and method for using digitally signed web tokens to securely share sensitive data includes identifying an API request that includes an authorization header comprising authentication data; assessing the authentication data of the API request against a corpus of valid authentication data; identifying the authentication data as valid authentication data and a target entity that corresponds to the authentication data; obtaining a set of permissions associated with the target entity; generating a digitally signed protobuf web token that includes a representation of the target entity and a representation of the set of permissions associated with the target entity; and based on the generation of the digitally signed protobuf web token: adapting the API request to an adapted API request that includes a header component comprising the digitally signed protobuf web token; and transmitting the adapted API request to a target API-processing service.
    Type: Grant
    Filed: June 13, 2024
    Date of Patent: November 4, 2025
    Assignee: Expel, Inc.
    Inventor: Matthew Blasius
  • Publication number: 20250310359
    Abstract: A system, method, and computer-program product includes displaying, via a data integration building user interface, a plurality of integration-identifying user interface input elements configured to receive one or more strings of text for specifying a set of integration identification parameters that characterize an in-development security integration for a third-party security service, displaying, via the data integration building user interface, a signal-specific data mapping container based on receiving an input selecting a signal mapping addition control button of the data integration building user interface, displaying, via the data integration building user interface, a raw event simulation container based on receiving an input selecting a simulation addition control button of the data integration building user interface, and displaying, via the data integration building user interface, an integration deployment control element that, when operated, transitions the in-development security integration to
    Type: Application
    Filed: May 14, 2025
    Publication date: October 2, 2025
    Applicant: Expel, Inc.
    Inventors: Dan Whalen, Patrick Edgett, Issa Hafiri, Ashwin Ramesh, Andrew Pritchett, Sam Chiou, Joseph Rodriguez, Dave Walk, Max Timmons, Matt Dean
  • Publication number: 20250291907
    Abstract: A system, method, and computer-program product includes generating a polling task that is configured to retrieve raw event data of a subscriber that occurred during a target time span from a third-party security service, computing an optimal polling frequency control value for the polling task in response to generating the polling task, partitioning the target time span into a plurality of distinct sub-intervals of time based on the optimal polling frequency control value computed for the polling task, automatically transmitting, to an application programming interface endpoint of the third-party security service, a plurality of distinct network requests to optimally perform the polling task, receiving the raw event data of the subscriber from the third-party security service that occurred during the target time span in response to transmitting the plurality of distinct network request, and generating one or more security alerts in response to processing the raw event data.
    Type: Application
    Filed: February 21, 2025
    Publication date: September 18, 2025
    Applicant: Expel, Inc.
    Inventors: Anders Blair, Matthew Kracht, Aaron Fermin, Sarah Taurchini, Carter King, David Casagrande
  • Patent number: 12388870
    Abstract: A system and method for accelerating a disposition of non-malicious electronic communications includes extracting one or more corpora of feature vectors from an electronic communication based on providing the electronic communication as input to a feature extractor; computing, by a machine learning-based electronic communication classification model, an electronic communication-type classification inference that includes a probability of the electronic communication being of the target non-malicious electronic communication type in response to the machine learning-based electronic communication classification model receiving the one or more corpora of feature vectors; attributing a classification label of the target non-malicious electronic communication type to the electronic communication based on the probability of the electronic communication-type classification inference satisfying a minimum electronic communication classification threshold; and automatically routing a security alert associated with the
    Type: Grant
    Filed: September 13, 2024
    Date of Patent: August 12, 2025
    Assignee: Expel, Inc.
    Inventors: Elisabeth Weber, Jane Hung
  • Patent number: D1087978
    Type: Grant
    Filed: August 26, 2022
    Date of Patent: August 12, 2025
    Assignee: Expel, Inc.
    Inventor: Matt Peters
  • Patent number: D1099115
    Type: Grant
    Filed: August 26, 2022
    Date of Patent: October 21, 2025
    Assignee: Expel, Inc.
    Inventor: Kelly Nakawatase
  • Patent number: D1105095
    Type: Grant
    Filed: August 26, 2022
    Date of Patent: December 9, 2025
    Assignee: Expel, Inc.
    Inventor: Dan Whalen
  • Patent number: D1110354
    Type: Grant
    Filed: July 10, 2025
    Date of Patent: January 27, 2026
    Assignee: Expel, Inc.
    Inventor: Matt Peters
  • Patent number: D1128717
    Type: Grant
    Filed: September 23, 2025
    Date of Patent: June 2, 2026
    Assignee: Expel, Inc.
    Inventor: Kelly Nakawatase