Invention Grant
- Patent Title: Threat detection using cloud resource management logs
-
Application No.: US17333534Application Date: 2021-05-28
-
Publication No.: US11716340B2Publication Date: 2023-08-01
- Inventor: Roy Levin , Ram Haim Pliskin , Johnathan Samuel Simon
- Applicant: Microsoft Technology Licensing, LLC
- Applicant Address: US WA Redmond
- Assignee: Microsoft Technology Licensing, LLC
- Current Assignee: Microsoft Technology Licensing, LLC
- Current Assignee Address: US WA Redmond
- Agency: Schwegman Lundberg & Woessner, P.A.
- Main IPC: H04L9/40
- IPC: H04L9/40 ; H04L67/50 ; H04L67/10

Abstract:
Generally discussed herein are devices, systems, and methods for improving cloud resource security. A method can include obtaining a cloud resource management log that details actions performed by users of cloud resources in a cloud portal, the actions including entries comprising at least two of a user identification (ID) of a user of the users, an operation of operations performed on the cloud resource, a uniform resource identifier (URI) of a cloud resource of the cloud resources that is a target of the operation, or a time the operation was performed. The method can include determining a respective score for each action in the cloud resource management log, comparing the respective score to a specified criterion, and providing an indication of anomalous action in response to determining the respective score satisfies the specified criterion.
Public/Granted literature
- US20220385682A1 THREAT DETECTION USING CLOUD RESOURCE MANAGEMENT LOGS Public/Granted day:2022-12-01
Information query