Patent · US Active

Endpoint detection and response utilizing machine learning

US10699012B2 · kind B2 · utility

3Cited by
3References
19Claims
0Family size

Assignee

Inventors

Key dates

Filing dateJan 4, 2018
Grant dateJun 30, 2020
Priority date
Expiry dateFeb 25, 2038

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06N3/006
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

A plurality of events associated with each of a plurality of computing nodes that form part of a network topology are monitored. The network topology includes antivirus tools to detect malicious software prior to it accessing one of the computing nodes. Thereafter, it is determined that, using at least one machine learning model, at least one of the events is indicative of malicious activity that has circumvented or bypassed the antivirus tools. Data is then provided that characterizes the determination. Related apparatus, systems, techniques and articles are also described.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.