Invention Grant
- Patent Title: Method of data-efficient threat detection in a computer network
-
Application No.: US17029538Application Date: 2020-09-23
-
Publication No.: US11895124B2Publication Date: 2024-02-06
- Inventor: Matti Aksela
- Applicant: F-Secure Corporation
- Applicant Address: FI Helsinki
- Assignee: F-SECURE CORPORATION
- Current Assignee: F-SECURE CORPORATION
- Current Assignee Address: FI Helsinki
- Agency: Thomas | Horstemeyer, LLP
- Priority: GB 13715 2019.09.24
- Main IPC: H04L9/40
- IPC: H04L9/40 ; G06N20/00

Abstract:
There is provided data-efficient threat detection method in a computer network. The method can include: receiving raw data related to a network node, generating local 5 behaviour models related to the network node; generating at least one common model of normal behaviour on the basis of local behaviour models related to multiple network nodes; filtering input events by using a measure for estimating the likelihood that the input event is produced by the generated common model of normal behaviour and/or by the generated one or more local behaviour models, wherein only input events having a 10 likelihood below a predetermined threshold of being produced by any one of the models are passed through the filtering; and processing input events passed through the filtering for generating a security related decision.
Public/Granted literature
- US20210092129A1 Method of Data-Efficient Threat Detection in a Computer Network Public/Granted day:2021-03-25
Information query