Invention Grant
- Patent Title: Detecting suspicious file activity
-
Application No.: US16558588Application Date: 2019-09-03
-
Publication No.: US11611571B2Publication Date: 2023-03-21
- Inventor: Peter John Lindquist
- Applicant: Code42 Software, Inc.
- Applicant Address: US MN Minneapolis
- Assignee: Code42 Software, Inc.
- Current Assignee: Code42 Software, Inc.
- Current Assignee Address: US MN Minneapolis
- Agency: Schwegman Lundberg & Woessner, P.A.
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L9/40 ; G06N20/00

Abstract:
Systems and techniques for detecting suspicious file activity are described herein. System for identifying anomalous data events is adapted to monitor a networked file system and receive an indication of a suspicious event associated with a user and a file. The system is further adapted to perform a pattern of behavior analysis for the user, perform an adjacency by time analysis based on a set of events before the suspicious event and a set of events after the suspicious event, and perform an adjacency by location analysis using a set of files located in a location of the file. The system is further adapted to determine whether the suspicious event is an anomalous event based on the pattern of behavior analysis, the adjacency by time analysis, and the adjacency by location analysis and display a report for the user including the anomalous event.
Public/Granted literature
- US20210067522A1 DETECTING SUSPICIOUS FILE ACTIVITY Public/Granted day:2021-03-04
Information query