Invention Grant
- Patent Title: Network anomaly detection
- Patent Title (中): 网络异常检测
-
Application No.: US14970317Application Date: 2015-12-15
-
Publication No.: US09407652B1Publication Date: 2016-08-02
- Inventor: Maxim Kesin , Samuel Jones
- Applicant: Palantir Technologies, Inc.
- Applicant Address: US CA Palo Alto
- Assignee: Palantir Technologies Inc.
- Current Assignee: Palantir Technologies Inc.
- Current Assignee Address: US CA Palo Alto
- Agency: Knobbe, Martens, Olson & Bear LLP
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
A security system detects anomalous activity in a network. The system logs user activity, which can include ports used, compares users to find similar users, sorts similar users into cohorts, and compares new user activity to logged behavior of the cohort. The comparison can include a divergence calculation. Origins of user activity can also be used to determine anomalous network activity. The hostname, username, IP address, and timestamp can be used to calculate aggregate scores and convoluted scores.
Public/Granted literature
- US1273918A Grease-catching device for automobiles. Public/Granted day:1918-07-30
Information query