Invention Grant
- Patent Title: Lateral movement detection for network security analysis
-
Application No.: US15995073Application Date: 2018-05-31
-
Publication No.: US10476898B2Publication Date: 2019-11-12
- Inventor: Sudhakar Muddu , Christos Tryfonas , Fumei Lam , Georgios Apostolopoulos
- Applicant: Splunk Inc.
- Applicant Address: US CA San Francisco
- Assignee: SPLUNK INC.
- Current Assignee: SPLUNK INC.
- Current Assignee Address: US CA San Francisco
- Agency: Perkins Coie LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L12/24 ; H04L12/26 ; G06F3/0482 ; G06N99/00 ; G06N7/00 ; G06N5/04 ; G06K9/20 ; G06F17/30 ; G06F17/22 ; G06F3/0484 ; G06N20/00 ; G06F16/25 ; G06F16/28 ; G06F16/44 ; G06F16/901 ; G06F16/2457 ; G06N5/02

Abstract:
A security platform employs a variety techniques and mechanisms to detect security related anomalies and threats in a computer network environment. The security platform is “big data” driven and employs machine learning to perform security analytics. The security platform performs user/entity behavioral analytics (UEBA) to detect the security related anomalies and threats, regardless of whether such anomalies/threats were previously known. The security platform can include both real-time and batch paths/modes for detecting anomalies and threats. By visually presenting analytical results scored with risk ratings and supporting evidence, the security platform enables network security administrators to respond to a detected anomaly or threat, and to take action promptly.
Public/Granted literature
- US20180288079A1 LATERAL MOVEMENT DETECTION FOR NETWORK SECURITY ANALYSIS Public/Granted day:2018-10-04
Information query