Invention Grant
- Patent Title: Method, product, and system for maintaining an ensemble of hierarchical machine learning models for detection of security risks and breaches in a network
-
Application No.: US16861121Application Date: 2020-04-28
-
Publication No.: US11595416B2Publication Date: 2023-02-28
- Inventor: Hsin Chen , Nicolas Beauchesne , Himanshu Mhatre , John Steven Mancini
- Applicant: Vectra AI, Inc.
- Applicant Address: US CA San Jose
- Assignee: Vectra AI, Inc.
- Current Assignee: Vectra AI, Inc.
- Current Assignee Address: US CA San Jose
- Agency: Vista IP Law Group, LLP
- Main IPC: H04L9/40
- IPC: H04L9/40 ; G06N20/00

Abstract:
Disclosed is an improved approach for identifying security risks and breaches in a network by applying machine learning methods that learn resource access patterns in the network. Specifically, by observing the access pattern of the network entities (e.g. accounts, services, and hosts) from authorization requests/responses, the model through unsupervised learning, organizes the entity relationships into an ensemble of hierarchical models. The ensemble of hierarchical models can then be leveraged to create a series of metrics that can be used to identify various types of abnormalities in the access of a resource on the network. For instance, by further classifying the access request for a resource using abnormality scores into detection scenarios, the model is able to detect both an abnormality and the type of abnormality and include such information in a corresponding alarm when a security breach happens.
Public/Granted literature
Information query