Invention Grant
- Patent Title: Identifying security risks using distributions of characteristic features extracted from a plurality of events
-
Application No.: US16216304Application Date: 2018-12-11
-
Publication No.: US11411973B2Publication Date: 2022-08-09
- Inventor: Eduardo Luiggi , Christopher Poirel , Ann Irvine
- Applicant: Forcepoint, LLC
- Applicant Address: US TX Austin
- Assignee: Forcepoint, LLC
- Current Assignee: Forcepoint, LLC
- Current Assignee Address: US TX Austin
- Agency: Terrile, Cannatti & Chambers
- Agent Stephen A. Terrile
- Main IPC: H04L29/00
- IPC: H04L29/00 ; H04L9/40 ; G06F16/28

Abstract:
A method, system and computer-usable medium are disclosed for identifying security risks to a computer system based on a distribution of categorical features of events. Certain embodiments are directed to a computer-implemented method comprising: receiving a stream of events, the stream of events including a plurality of events; extracting a categorical feature from the plurality of events, where the categorical feature includes a set of categorical feature members, where the set of categorical feature members are generated on the fly from string values included in the extracted categorical feature; constructing a distribution for the categorical feature based on categorical feature members extracted from the plurality of events; and, analyzing the distribution of the categorical feature to identify one or more security risk factors.
Public/Granted literature
Information query