Network threat detection and management system based on user behavior information

    公开(公告)号:US10931698B2

    公开(公告)日:2021-02-23

    申请号:US16531218

    申请日:2019-08-05

    Abstract: A device may receive behavior information that identifies a first user, of a first set of users, in association with a behavior. The behavior may relate to one or more requests, from a client device being used by the first user, to access a network resource. The device may determine, based on a model, whether the behavior is normal. The model may include a normal behavior pattern based on behavior information associated with the first set of users. The device may provide an instruction to allow the client device to proceed with the behavior or provide an instruction to disallow the client device from proceeding with the behavior based on determining whether the behavior is normal. The device may update the model based on the behavior information that identifies the first user and that identifies the behavior.

    QUALITY OF SERVICE OPTIMIZATION MANAGEMENT TOOL
    3.
    发明申请
    QUALITY OF SERVICE OPTIMIZATION MANAGEMENT TOOL 有权
    优质服务优化管理工具

    公开(公告)号:US20150295787A1

    公开(公告)日:2015-10-15

    申请号:US14251891

    申请日:2014-04-14

    Abstract: A device may receive traffic information associated with traffic flows assigned to a group of quality of service (QoS) treatment levels and travelling via a network device. The device may identify a group of target performance metrics corresponding to the group of QoS treatment levels. The device may determine a group of weight factors based on the traffic information and the group of target performance metrics. The group of weight factors may be determined such that a group of predicted performance metrics is optimized with respect to the group of target performance metrics. The device may output information identifying the group of weight factors to cause a parameter, associated with the network device, to be updated based on the group of weight factors. The parameter may relate to a manner in which the traffic flows are processed by the network device.

    Abstract translation: 设备可以接收与分配给一组服务质量(QoS)处理级别并经由网络设备行进的业务流相关联的业务信息。 该设备可以标识与该QoS处理级别组对应的一组目标性能度量。 设备可以基于交通信息和目标性能指标组来确定一组权重因子。 可以确定一组加权因子,使得针对目标性能度量组优化一组预测的性能度量。 该设备可以基于权重因子组来输出识别权重因子组的信息,以引起与网络设备相关联的参数。 该参数可以涉及由网络设备处理业务流的方式。

    Accuracy estimation and enhancement of position data using kernel density estimation

    公开(公告)号:US09826349B1

    公开(公告)日:2017-11-21

    申请号:US15209301

    申请日:2016-07-13

    CPC classification number: H04W4/02 H04L67/02 H04W4/029 H04W64/00

    Abstract: A method and device may estimate the accuracy of position data using kernel density estimator. The method may include receiving, from a plurality of user devices, network requests having embedded position data representing locations of the plurality of user devices. The method further includes extracting, from the network requests over a time period, the embedded position data of a user device associated with the plurality of user devices; and receiving baseline position data representing the locations of the user device over the time period. The method included generating a probability density estimate of the locations of the user device based on a kernel density estimator using the baseline position data, determining accuracy scores for the embedded position data using the probability density estimate of the locations, and filtering the embedded position data to remove outliers from the embedded position data.

    Quality of service optimization management tool
    5.
    发明授权
    Quality of service optimization management tool 有权
    服务质量优化管理工具

    公开(公告)号:US09219658B2

    公开(公告)日:2015-12-22

    申请号:US14251891

    申请日:2014-04-14

    Abstract: A device may receive traffic information associated with traffic flows assigned to a group of quality of service (QoS) treatment levels and travelling via a network device. The device may identify a group of target performance metrics corresponding to the group of QoS treatment levels. The device may determine a group of weight factors based on the traffic information and the group of target performance metrics. The group of weight factors may be determined such that a group of predicted performance metrics is optimized with respect to the group of target performance metrics. The device may output information identifying the group of weight factors to cause a parameter, associated with the network device, to be updated based on the group of weight factors. The parameter may relate to a manner in which the traffic flows are processed by the network device.

    Abstract translation: 设备可以接收与分配给一组服务质量(QoS)处理级别并经由网络设备行进的业务流相关联的业务信息。 该设备可以标识与该QoS处理级别组对应的一组目标性能度量。 设备可以基于交通信息和目标性能指标组来确定一组权重因子。 可以确定一组加权因子,使得针对目标性能度量组优化一组预测的性能度量。 所述设备可以基于所述一组权重因子来输出标识所述一组加权因子的信息,以引起与所述网络设备相关联的参数。 该参数可以涉及由网络设备处理业务流的方式。

    OPTIMIZED FRAMEWORK FOR NETWORK ANALYTICS
    6.
    发明申请
    OPTIMIZED FRAMEWORK FOR NETWORK ANALYTICS 审中-公开
    网络分析的优化框架

    公开(公告)号:US20150149613A1

    公开(公告)日:2015-05-28

    申请号:US14090334

    申请日:2013-11-26

    CPC classification number: H04L41/142 H04L41/147 H04L47/20 H04L47/823

    Abstract: A system may receive raw information associated with a network and may prepare the raw information to create optimized information. The optimized information may include the raw information that has been sorted. The system may correlate the optimized information to create a set of correlated information. The system may aggregate at least two sets of correlated information to create aggregated information. The system may determine that network analytics are to be performed using the set of correlated information or the aggregated information. The system may determine information associated with performing the network analytics, including the set of correlated information or the aggregated information. The system may perform the network analytics based on the information associated with performing the network analytics. The system may provide a result associated with performing the network analytics. The result may indicate a manner in which to improve a performance of the network.

    Abstract translation: 系统可以接收与网络相关联的原始信息,并且可以准备原始信息以创建优化的信息。 优化的信息可以包括已经排序的原始信息。 系统可以将优化的信息相关联以创建一组相关信息。 系统可以聚合至少两组相关信息以创建汇总信息。 系统可以确定使用相关信息集合或聚合信息来执行网络分析。 系统可以确定与执行网络分析相关联的信息,包括相关信息集合或聚合信息。 该系统可以基于与执行网络分析相关联的信息执行网络分析。 该系统可以提供与执行网络分析相关联的结果。 结果可以指示改善网络性能的方式。

    NETWORK THREAT DETECTION AND MANAGEMENT SYSTEM BASED ON USER BEHAVIOR INFORMATION

    公开(公告)号:US20190356689A1

    公开(公告)日:2019-11-21

    申请号:US16531218

    申请日:2019-08-05

    Abstract: A device may receive behavior information that identifies a first user, of a first set of users, in association with a behavior. The behavior may relate to one or more requests, from a client device being used by the first user, to access a network resource. The device may determine, based on a model, whether the behavior is normal. The model may include a normal behavior pattern based on behavior information associated with the first set of users. The device may provide an instruction to allow the client device to proceed with the behavior or provide an instruction to disallow the client device from proceeding with the behavior based on determining whether the behavior is normal. The device may update the model based on the behavior information that identifies the first user and that identifies the behavior.

    Network threat detection and management system based on user behavior information

    公开(公告)号:US10412106B2

    公开(公告)日:2019-09-10

    申请号:US14635158

    申请日:2015-03-02

    Abstract: A device may receive behavior information that identifies a first user, of a first set of users, in association with a behavior. The behavior may relate to one or more requests, from a client device being used by the first user, to access a network resource. The device may determine, based on a model, whether the behavior is normal. The model may include a normal behavior pattern based on behavior information associated with the first set of users. The device may provide an instruction to allow the client device to proceed with the behavior or provide an instruction to disallow the client device from proceeding with the behavior based on determining whether the behavior is normal. The device may update the model based on the behavior information that identifies the first user and that identifies the behavior.

    NETWORK THREAT DETECTION AND MANAGEMENT SYSTEM BASED ON USER BEHAVIOR INFORMATION
    9.
    发明申请
    NETWORK THREAT DETECTION AND MANAGEMENT SYSTEM BASED ON USER BEHAVIOR INFORMATION 审中-公开
    基于用户行为信息的网络威胁检测与管理系统

    公开(公告)号:US20160261621A1

    公开(公告)日:2016-09-08

    申请号:US14635158

    申请日:2015-03-02

    CPC classification number: H04L63/1425 H04L63/1466 H04L67/22 H04L69/22

    Abstract: A device may receive behavior information that identifies a first user, of a first set of users, in association with a behavior. The behavior may relate to one or more requests, from a client device being used by the first user, to access a network resource. The device may determine, based on a model, whether the behavior is normal. The model may include a normal behavior pattern based on behavior information associated with the first set of users. The device may provide an instruction to allow the client device to proceed with the behavior or provide an instruction to disallow the client device from proceeding with the behavior based on determining whether the behavior is normal. The device may update the model based on the behavior information that identifies the first user and that identifies the behavior.

    Abstract translation: 设备可以接收与行为相关联地标识第一组用户的第一用户的行为信息。 该行为可以涉及来自第一用户正在使用的客户机设备访问网络资源的一个或多个请求。 设备可以基于模型来确定行为是否正常。 该模型可以包括基于与第一组用户相关联的行为信息的正常行为模式。 该设备可以提供允许客户端设备继续执行行为的指令,或者提供一种指令,以便根据确定该行为是否正常来禁止客户端设备进行该行为。 设备可以基于识别第一用户的行为信息来更新模型,并识别行为。

Patent Agency Ranking