Detection of malicious user accounts of an online service using feature analysis

    公开(公告)号:US11621966B1

    公开(公告)日:2023-04-04

    申请号:US16794159

    申请日:2020-02-18

    申请人: DataVisor, Inc.

    发明人: Fang Yu Olivia Wang

    IPC分类号: H04L9/40 G06N20/00

    摘要: Methods, systems, and apparatus, including computer programs encoded on computer storage media, for fraud detection. One of the methods includes partitioning a feature space into a plurality of sub feature spaces, wherein the feature space comprises features associated with user account events for an online service; generating one or more clusters of users for each of one or more sub feature spaces; comparing a feature profile of one or more of the clusters with a global feature profile to determine features of one or more the clusters that have concentrated key values that exceed a respective threshold value; for each of the one or more clusters, scoring the cluster including aggregating the degree to which the key values for features exceed the corresponding threshold values; and based on the scores of the one or more clusters, determining one or more fraud detection actions.

    DETECTION OF COMMON PATTERNS IN USER GENERATED CONTENT WITH APPLICATIONS IN FRAUD DETECTION

    公开(公告)号:US20210117552A1

    公开(公告)日:2021-04-22

    申请号:US17074463

    申请日:2020-10-19

    申请人: DataVisor, Inc.

    IPC分类号: G06F21/57 G06K9/62

    摘要: Methods, systems, and apparatus, including computer programs encoded on computer storage media, for detecting suspicious accounts. One of the methods includes identifying one or more potential clusters of malicious accounts; for each cluster, processing a collection of content associated with each account of the cluster, the processing comprising applying a plurality of models in series to determine whether the collection of content indicates a common pattern; and based on the respective determinations, classifying the accounts of each cluster as ordinary or suspicious.

    Using IP address data to detect malicious activities

    公开(公告)号:US10129288B1

    公开(公告)日:2018-11-13

    申请号:US14620062

    申请日:2015-02-11

    申请人: DataVisor Inc.

    发明人: Yinglian Xie Fang Yu

    IPC分类号: H04L29/06

    摘要: Methods, systems, and apparatus, including computer programs encoded on computer storage media, for detecting malicious activities. One of the methods includes obtaining a collection of user event logs or receiving user events through real-time feeds; using data from the user event logs/feeds to determine IP address properties for individual IP addresses and IP address ranges; and for each incoming event, updating the IP address properties for the corresponding IP address and IP prefix properties.

    Using group analysis to determine suspicious accounts or activities

    公开(公告)号:US10110616B1

    公开(公告)日:2018-10-23

    申请号:US14620029

    申请日:2015-02-11

    申请人: DataVisor Inc.

    发明人: Yinglian Xie Fang Yu

    摘要: Methods, systems, and apparatus, including computer programs encoded on computer storage media, for detecting suspicious users. One of the methods includes obtaining a collection of event logs or event feeds associated with a plurality of users to generate a collection of user properties; using the user properties to generate a plurality of groups of events; determining whether one or more groups are suspicious groups; and in response to a determination that one or more groups are suspicious, determining whether there are malicious accounts or events associated with each suspicious group.