Patent · US Active

Detection of anomalous computer behavior

US11310253B1 · kind B1 · utility

1Cited by
5References
20Claims
0Family size

Assignee

Inventors

Key dates

Filing dateApr 7, 2020
Grant dateApr 19, 2022
Priority date
Expiry dateSep 14, 2040

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L2463/121
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

A computer-implemented method for detecting anomalous behavior of one or more computers in a large group of computers comprises (1) receiving log files including a plurality of entries of data regarding connections between a plurality of computers belonging to an organization and a plurality of websites outside the organization, each entry being associated with the actions of one computer, (2) applying a first plurality of algorithms to determine features of the data which may contribute to anomalous behavior of the computers, and (3) applying a second plurality of algorithms to determine which computers are behaving anomalously based upon the features.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.