首页> 外国专利> System and method for modeling behavior change and consistency to detect malicious insiders

System and method for modeling behavior change and consistency to detect malicious insiders

机译:用于对行为变化和一致性进行建模以检测恶意内部人员的系统和方法

摘要

One embodiment of the present invention provides a system for identifying anomalies. During operation, the system obtains work practice data associated with a plurality of users. The work practice data includes a plurality of user events. The system further categorizes the work practice data into a plurality of domains based on types of the user events, models user behaviors within a respective domain based on work practice data associated with the respective domain, and identifies at least one anomalous user based on modeled user behaviors from the multiple domains.
机译:本发明的一个实施例提供了一种用于识别异常的系统。在操作期间,系统获得与多个用户关联的工作实践数据。工作实践数据包括多个用户事件。该系统还基于用户事件的类型将工作实践数据分类为多个域,基于与相应领域相关联的工作实践数据在相应领域内对用户行为进行建模,并基于建模用户来识别至少一个异常用户。来自多个域的行为。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号