Invention Grant
- Patent Title: Detection of brute force attacks
-
Application No.: US16833041Application Date: 2020-03-27
-
Publication No.: US11363059B2Publication Date: 2022-06-14
- Inventor: Cole Sodja , Justin Anthony Natelli Carroll
- Applicant: Microsoft Technology Licensing, LLC
- Applicant Address: US WA Redmond
- Assignee: Microsoft Technology Licensing, LLC
- Current Assignee: Microsoft Technology Licensing, LLC
- Current Assignee Address: US WA Redmond
- Agency: Schwegman Lundberg & Woessner, P.A.
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L9/40

Abstract:
The disclosed embodiments determine a plurality of anomaly indications for a plurality of corresponding time series. A multi-modal model is defined for each time series. A first distribution is compared against a time series when the time series values fall within a first range and a second distribution is compared against the time series when the time series values fall with a second range. Based on the comparison, an indication of anomaly is generated for the time series. The indicators of anomaly for each time series are then combined using Fisher's method in some embodiments. The resulting combined anomaly indication is used to determine whether a network is experiencing a brute force attack.
Public/Granted literature
- US20210185084A1 DETECTION OF BRUTE FORCE ATTACKS Public/Granted day:2021-06-17
Information query