Patent · US Active

Detecting threats based on API service business logic abuse

US12307361B2 · kind B2 · utility

0Cited by
9References
11Claims
0Family size

Assignee

Inventors

Key dates

Filing dateJun 17, 2021
Grant dateMay 20, 2025
Priority date
Expiry dateNov 20, 2042

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06F2221/034
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

Behaviors in the form of API strings for each of a plurality of users are determined for each user interacting with an API for a particular time. The behavior strings are converted to a numerical format, and clustering algorithms are applied to the numerical format data. The type of cluster is then determined for each cluster. Types of clusters can include an attacking user, bots, speed of access, and outlier type. The results of clustering and a statistical analysis can be reported to a user through a dashboard. The dashboard may provide graphical information, for example in the form of a sankey diagram, as well as statistical analysis data for each cluster.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.