首页> 外国专利> Cybersecurity incident detection systems and techniques

Cybersecurity incident detection systems and techniques

机译:网络安全事件检测系统和技术

摘要

Behavioral baselines for a computer system may be accurately and efficiently established by (1) monitoring occurrences on the computer system, (2) determining, based on security rules or heuristics, which of the observed occurrences are associated with potential security risks, (3) identifying patterns of activity based on the suspicious occurrences, and (4) prompting a user to indicate whether the observed patterns of suspicious activity are expected or unexpected. Behavior baselines established in this manner can then be used to differentiate between expected and unexpected patterns of activity on the computer system.
机译:计算机系统的行为基线可以通过(1)在计算机系统上的监视发生(2)基于安全规则或启发式确定,观察到的发生与潜在的安全风险相关联(3)识别基于可疑事件的活动模式,以及(4)提示用户指示是否预期观察到的可疑活动模式或意外。然后,以这种方式建立的行为基线可以用于区分计算机系统上的预期和意外的活动模式。

著录项

  • 公开/公告号US10972489B2

    专利类型

  • 公开/公告日2021-04-06

    原文格式PDF

  • 申请/专利权人 CARBON BLACK INC.;

    申请/专利号US201715704676

  • 申请日2017-09-14

  • 分类号H04L29/06;G06F16/951;G06F21/56;G06F21/55;G06N5/02;

  • 国家 US

  • 入库时间 2022-08-24 18:04:26

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号