Patent · US Active

Application-level anomaly detection

US9141792B2 · kind B2 · utility

60Cited by
7References
19Claims
0Family size

Assignee

Inventors

Key dates

Filing dateSep 18, 2013
Grant dateSep 22, 2015
Priority date
Expiry dateSep 18, 2033

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06F2221/2115
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

An example includes intercepting one or more activities performed by an application on a computing device. The intercepting uses an instrumentation layer separating the application from an operating system on the computing device. The one or more activities are compared with one or more anomaly detection policies in a policy configuration file to detect or not detect presence of one or more anomalies. In response to the comparison detecting presence of one or more anomalies, indication(s) of the one or more anomalies are stored. Another example includes receiving indication(s) of anomaly(ies) experienced by an application on computing device(s) and analyzing the indication(s) of the anomaly(ies) to determine whether corrective action(s) should be issued. Responsive to a determination corrective action(s) should be issued based on the analyzing, the corrective action(s) are issued to the computing device(s). Methods, program products, and apparatus are disclosed.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.