DISTRIBUTED ANOMALY MANAGEMENT
    4.
    发明申请

    公开(公告)号:US20170318037A1

    公开(公告)日:2017-11-02

    申请号:US15142687

    申请日:2016-04-29

    CPC classification number: H04L63/1416 G06F21/55 G06F21/554 H04L63/1425

    Abstract: Examples relate to distributed anomaly management. In one example, a computing device may: receive real-time anomaly data for a first set of client devices, wherein the received anomaly data includes: anomalous network behavior data received from a network intrusion detection system (NICKS) monitoring network traffic behavior, anomalous host event data received from a host intrusion detection system (HIDS) monitoring host events originating from client devices in the first set, and anomalous process activity data received from a trace intrusion detection system (TIDS) monitoring process activity performed by client devices in the first set; for each client device in the first set of client devices for which anomaly data is received, associate the received anomaly data with the client device; and determine, for a particular client device, a measure of risk, wherein the measure of risk is dynamically adjusted based on the received real-time anomaly data.

    SIMILARITY IN A STRUCTURED DATASET
    5.
    发明申请

    公开(公告)号:US20170177704A1

    公开(公告)日:2017-06-22

    申请号:US15325630

    申请日:2014-07-29

    CPC classification number: G06F16/285 G06F16/243 G06F16/258 G06F16/36

    Abstract: Detecting similarity in a structured dataset is disclosed. One example is a system including a converter, and an evaluator. A structured dataset is received via a processing system, the dataset including a plurality of objects, each object of the plurality of objects associated with a category, and each category associated with an object label. The converter converts, for each object of the plurality of objects, the object label into a semantic term, The evaluator determines, via the processing system, a term similarity for a pair of object labels in a given category, the term similarity indicative of a correlation between the respective semantic terms in the given category.

Patent Agency Ranking