Advanced incident scoring
US11582246B2 · kind B2 · utility
Assignee
Inventor
Key dates
| Filing date | Jul 30, 2020 |
| Grant date | Feb 14, 2023 |
| Priority date | — |
| Expiry date | Nov 27, 2040 |
Classification
- Technology area (CPC G)Physics
- CPC primaryG06F16/26
- WIPO fieldComputer technology
- WIPO sectorElectrical engineering
Abstract
Techniques and systems to provide a more intuitive user overview of events data by mapping unbounded incident scores to a fixed range and aggregating incident scores by different schemes. The system may detect possible malicious incidents associated with events processing on a host device. The events data may be gathered from events detected on the host device. The incident scores for incidents may be determined from the events data. The incident scores may be mapped to bins of a fixed range to highlight the significance of the incident scores. For instance, a first score mapped to a first bin may be insignificant while a second score mapped to a last bin may require urgent review. The incident scores may also be aggregated at different levels (e.g., host device, organization, industry, global, etc.) and at different time intervals to provide insights to the data.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.