Patent · US Active

Systems and methods for detecting anomalous system or network behavior

US11381583B1 · kind B1 · utility

4Cited by
1References
14Claims
0Family size

Assignee

Inventors

Key dates

Filing dateNov 1, 2018
Grant dateJul 5, 2022
Priority date
Expiry dateOct 30, 2040

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06F2201/81
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

A system and associated methods for the detection of anomalous behavior in a system. In some embodiments, time-series data that is obtained from the system (such as log data) may be used as an input to a process that converts the data into greyscale values. The greyscale values are used to construct an “image” of the system operation that is used as an input to a convolutional neural network (CNN). The image is used to train the neural network so that the neural network is able to recognize when other input “images” constructed from time-series data are anomalous or otherwise indicative of a difference between the prior (and presumed normal or acceptable) and the current operation of the system.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.