RISK ASSESSMENT FOR NETWORK ACCESS CONTROL THROUGH DATA ANALYTICS

    公开(公告)号:US20190116193A1

    公开(公告)日:2019-04-18

    申请号:US15785430

    申请日:2017-10-17

    申请人: Yanlin Wang Weizhi Li

    发明人: Yanlin Wang Weizhi Li

    IPC分类号: H04L29/06 G06N99/00

    摘要: Methods and systems of risk assessment for network access control through data analytics. An embodiment of the invention employs well-known machine-learning clustering methods to learn normal entity behavior by looking for patterns in the events that stream in continuously. In an embodiment of the invention, normal entity behaviors are represented as clusters of event vectors. An embodiment of the invention evaluates the risk level for a new event of an entity by comparing the event with the entity's profile represented as clusters of event vectors. In an embodiment of the invention, the risk level is associated with a confidence level. Confidence level indicates how well the system knows about the entity. Embodiments of the invention do not need human administration in the process of building entity profile and assessing risk level of events associated with an entity.

    Extendable event processing through services
    3.
    发明授权
    Extendable event processing through services 有权
    通过服务扩展事件处理

    公开(公告)号:US08661456B2

    公开(公告)日:2014-02-25

    申请号:US13285939

    申请日:2011-10-31

    IPC分类号: G06F3/00

    CPC分类号: G06F9/547 G06F9/541

    摘要: A system for extending event processing through services includes an event process module to process event data according to event processing rules and services. A build-time system provides an interface for adding or modifying services. A service request gateway receives service requests from service consumers and receives event data from event data providers and provides the service requests to a service container module and provides the event data to the event process module. The service container modules invokes services for the service requests.

    摘要翻译: 用于通过服务来扩展事件处理的系统包括事件处理模块,用于根据事件处理规则和服务处理事件数据。 构建时系统提供了一个用于添加或修改服务的界面。 服务请求网关接收来自服务使用者的服务请求并从事件数据提供者接收事件数据,并将服务请求提供给服务容器模块,并将事件数据提供给事件处理模块。 服务容器模块调用服务请求的服务。

    PARAMETER ADJUSTMENT FOR PATTERN DISCOVERY
    5.
    发明申请
    PARAMETER ADJUSTMENT FOR PATTERN DISCOVERY 有权
    模式调查的参数调整

    公开(公告)号:US20150106922A1

    公开(公告)日:2015-04-16

    申请号:US14398017

    申请日:2012-05-30

    IPC分类号: H04L29/06 H04L12/26

    CPC分类号: H04L63/1408 H04L43/04

    摘要: Pattern discovery performed on event data may include selecting an initial set of parameters for the pattern discovery. The parameters may specify conditions for identifying a pattern in the event data. A pattern discovery run is executed on the event data based on the initial set of parameters, and a parameter may be adjusted based on the output of the pattern discovery run.

    摘要翻译: 对事件数据执行的模式发现可以包括为模式发现选择一组初始参数。 参数可以指定用于识别事件数据中的模式的条件。 基于初始参数集在事件数据上执行模式发现运行,并且可以基于模式发现运行的输出来调整参数。

    EXTENDABLE EVENT PROCESSING THROUGH SERVICES
    6.
    发明申请
    EXTENDABLE EVENT PROCESSING THROUGH SERVICES 有权
    通过服务进行可扩展的活动

    公开(公告)号:US20120311611A1

    公开(公告)日:2012-12-06

    申请号:US13285939

    申请日:2011-10-31

    IPC分类号: G06F9/46

    CPC分类号: G06F9/547 G06F9/541

    摘要: A system for extending event processing through services includes an event process module to process event data according to event processing rules and services. A build-time system provides an interface for adding or modifying services. A service request gateway receives service requests from service consumers and receives event data from event data providers and provides the service requests to a service container module and provides the event data to the event process module. The service container modules invokes services for the service requests.

    摘要翻译: 用于通过服务来扩展事件处理的系统包括事件处理模块,用于根据事件处理规则和服务处理事件数据。 构建时系统提供了一个用于添加或修改服务的界面。 服务请求网关接收来自服务使用者的服务请求并从事件数据提供者接收事件数据,并将服务请求提供给服务容器模块,并将事件数据提供给事件处理模块。 服务容器模块调用服务请求的服务。

    Anti-shedding power cable plug
    7.
    发明授权

    公开(公告)号:US10153585B1

    公开(公告)日:2018-12-11

    申请号:US15884377

    申请日:2018-01-31

    摘要: The present invention discloses an anti-shedding power cable plug, comprising a power cable and a plug body. The plug body includes a hollow housing, the housing includes a lower housing and an upper housing, and the housing accommodates a lock insert and conductive pins. The lock insert includes an inner sleeve, a stepped groove is arranged in the middle of the inner sleeve, a supporting protrusion is arranged on the outer side of the stepped groove, a first rotating hole is arranged transversely on the inner side of the stepped groove. In the present invention, the anti-shedding hook enables the power cable plug to be locked on the socket, thereby preventing the power cable from shedding during use so as to improve the reliability.

    ADAPTIVE LEARNING PLATFORM
    8.
    发明申请
    ADAPTIVE LEARNING PLATFORM 审中-公开
    自适应学习平台

    公开(公告)号:US20160155345A1

    公开(公告)日:2016-06-02

    申请号:US14594130

    申请日:2015-01-11

    IPC分类号: G09B7/00 G09B5/02

    CPC分类号: G09B7/00 G09B5/02

    摘要: A cloud-based adaptive-learning platform (ALP) is provided to support an educational mobile or web application, with or without active Internet connections. The ALP is specifically designed to increase learners' engagement, optimize learning outcomes, and improve learning experience.

    摘要翻译: 提供了一个基于云的自适应学习平台(ALP)来支持有或没有主动互联网连接的教育性移动或Web应用程序。 ALP专门用于增加学习者的参与度,优化学习成果,改善学习经验。

    EXTENDABLE EVENT PROCESSING
    9.
    发明申请
    EXTENDABLE EVENT PROCESSING 审中-公开
    可扩展的事件处理

    公开(公告)号:US20120311562A1

    公开(公告)日:2012-12-06

    申请号:US13285903

    申请日:2011-10-31

    IPC分类号: G06F9/445 G06F9/46

    摘要: A system for extending event processing in an information and event management system includes an event stream application engine. The event stream application engine manages event stream applications, which includes installing the event stream applications in the information and event management system. The installed event stream applications are available to be deployed in an event data processing run-time environment to process event data received at the information and event management system. The system includes an event process extender to the event stream applications in an event stream processing workflow. Each event stream application in the workflow is to process the event data if the event stream application determines the event data to be relevant to processing performed by the event stream application..

    摘要翻译: 用于在信息和事件管理系统中扩展事件处理的系统包括事件流应用引擎。 事件流应用引擎管理事件流应用程序,其中包括将事件流应用程序安装在信息和事件管理系统中。 安装的事件流应用程序可以部署在事件数据处理运行时环境中,以处理在信息和事件管理系统接收到的事件数据。 该系统包括事件流处理工作流中的事件流应用程序的事件处理扩展器。 如果事件流应用程序确定与事件流应用执行的处理相关的事件数据,则工作流中的每个事件流应用程序是处理事件数据。

    SYSTEMS AND METHODS FOR ADAPTIVE DATA COLLECTION USING ANALYTICS AGENTS

    公开(公告)号:US20190306170A1

    公开(公告)日:2019-10-03

    申请号:US15940967

    申请日:2018-03-30

    申请人: Yanlin Wang Weizhi Li

    发明人: Yanlin Wang Weizhi Li

    摘要: Systems and methods for adaptive data collection using analytics agents for privileged access management. Embodiments of the invention deploy analytics agents to computer clients and servers at enterprise premises. Analytics agents collect event and contextual data of privileged users, record their computer access activities, and report the collected data to servers of analytics services. Analytics services produce entity behavior models and agent rules, and instruct analytics agents for adaptive data collection and session recording and uploading to the cloud storage. In an embodiment, an analytics agent is able to adjust the data collection scope dynamically and determine the session recording and uploading actions based on event entity behavior models and configured agent rules. Agent rules are automatically pushed to an analytics agent from analytics services and also can be set manually by system administrators.