Patent · US Active

Analysis and mitigation of network security risks

US11949702B1 · kind B1 · utility

0Cited by
18References
20Claims
0Family size

Assignee

Inventors

Key dates

Filing dateNov 2, 2022
Grant dateApr 2, 2024
Priority date
Expiry dateNov 2, 2042

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L65/61
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A method comprises acquiring anomaly data including a plurality of anomalies detected from streaming data, wherein each of the anomalies relates to an entity on or associated with a computer network. The method determines a risk score of each of the anomalies, and adjusts the risk score of an anomaly according to a set of factors. The method further determines, for each of a plurality of sliding time windows of different lengths, an entity score of the entity in relation to the sliding time window, based on an aggregation of risk scores of all anomalies related to the entity that were detected within the sliding time window, where the entity score corresponds to a risk level associated with the entity. An action to prevent the entity from performing an operation can be determined and caused to occur based on the entity score.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.