Invention Application
- Patent Title: METHODS AND APPARATUS TO IDENTIFY MALICIOUS ACTIVITY IN A NETWORK
- Patent Title (中): 识别网络中的恶性活动的方法和设备
-
Application No.: US14080532Application Date: 2013-11-14
-
Publication No.: US20150135320A1Publication Date: 2015-05-14
- Inventor: Baris Coskun
- Applicant: AT&T Intellectual Property I, L.P.
- Applicant Address: US GA Atlanta
- Assignee: AT&T Intellectual Property I, L.P.
- Current Assignee: AT&T Intellectual Property I, L.P.
- Current Assignee Address: US GA Atlanta
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
Methods, apparatus, systems and articles of manufacture are disclosed to learn malicious activity. An example method includes assigning weights of a distance function to respective statistical features; iteratively calculating, with a processor, the distance function to adjust the weights (1) to cause a reduction in a first distance calculated according to the distance function for a first pair of entities in a reference group associated with malicious activity and (2) to cause an increase in a second distance calculated according to the distance function for a first one of the entities included in the reference group and a second entity not included in the reference group; and determining whether a first statistical feature is indicative of malicious activity based on a respective adjusted weight of the first statistical feature determined after calculating the distance function for a number of iterations.
Public/Granted literature
- US09503465B2 Methods and apparatus to identify malicious activity in a network Public/Granted day:2016-11-22
Information query