JPWO2020214585A5 - - Google Patents
Download PDFInfo
- Publication number
- JPWO2020214585A5 JPWO2020214585A5 JP2021561816A JP2021561816A JPWO2020214585A5 JP WO2020214585 A5 JPWO2020214585 A5 JP WO2020214585A5 JP 2021561816 A JP2021561816 A JP 2021561816A JP 2021561816 A JP2021561816 A JP 2021561816A JP WO2020214585 A5 JPWO2020214585 A5 JP WO2020214585A5
- Authority
- JP
- Japan
- Prior art keywords
- vector
- similarity
- actions
- time intervals
- occurred
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Granted
Links
- 230000002547 anomalous effect Effects 0.000 claims 8
- 238000004590 computer program Methods 0.000 claims 7
- 238000000034 method Methods 0.000 claims 7
- 238000011524 similarity measure Methods 0.000 claims 6
- 238000013528 artificial neural network Methods 0.000 claims 2
Applications Claiming Priority (9)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| US201962835983P | 2019-04-18 | 2019-04-18 | |
| US201962835993P | 2019-04-18 | 2019-04-18 | |
| US201962835980P | 2019-04-18 | 2019-04-18 | |
| US62/835,993 | 2019-04-18 | ||
| US62/835,980 | 2019-04-18 | ||
| US62/835,983 | 2019-04-18 | ||
| US16/750,852 | 2020-01-23 | ||
| US16/750,852 US11930024B2 (en) | 2019-04-18 | 2020-01-23 | Detecting behavior anomalies of cloud users |
| PCT/US2020/028105 WO2020214585A1 (en) | 2019-04-18 | 2020-04-14 | Detecting behavior anomalies of cloud users |
Publications (4)
| Publication Number | Publication Date |
|---|---|
| JP2022529467A JP2022529467A (ja) | 2022-06-22 |
| JPWO2020214585A5 true JPWO2020214585A5 (https=) | 2023-04-14 |
| JP2022529467A5 JP2022529467A5 (https=) | 2023-04-14 |
| JP7576561B2 JP7576561B2 (ja) | 2024-10-31 |
Family
ID=72832113
Family Applications (2)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| JP2021561816A Active JP7576561B2 (ja) | 2019-04-18 | 2020-04-14 | クラウドユーザの行動異常の検出 |
| JP2021561804A Active JP7539408B2 (ja) | 2019-04-18 | 2020-04-14 | アウトライアアクションに関するクラウドユーザの行動異常の検出 |
Family Applications After (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| JP2021561804A Active JP7539408B2 (ja) | 2019-04-18 | 2020-04-14 | アウトライアアクションに関するクラウドユーザの行動異常の検出 |
Country Status (5)
| Country | Link |
|---|---|
| US (3) | US11288111B2 (https=) |
| EP (2) | EP3957048A1 (https=) |
| JP (2) | JP7576561B2 (https=) |
| CN (2) | CN113826368B (https=) |
| WO (2) | WO2020214587A1 (https=) |
Families Citing this family (57)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US11785104B2 (en) * | 2017-11-27 | 2023-10-10 | Lacework, Inc. | Learning from similar cloud deployments |
| US11288111B2 (en) | 2019-04-18 | 2022-03-29 | Oracle International Corporation | Entropy-based classification of human and digital entities |
| DE102019210227A1 (de) * | 2019-07-10 | 2021-01-14 | Robert Bosch Gmbh | Vorrichtung und Verfahren zur Anomalieerkennung in einem Kommunikationsnetzwerk |
| US12088473B2 (en) | 2019-10-23 | 2024-09-10 | Aryaka Networks, Inc. | Method, device and system for enhancing predictive classification of anomalous events in a cloud-based application acceleration as a service environment |
| US12095639B2 (en) | 2019-10-23 | 2024-09-17 | Aryaka Networks, Inc. | Method, device and system for improving performance of point anomaly based data pattern change detection associated with network entity features in a cloud-based application acceleration as a service environment |
| US12050689B2 (en) * | 2019-11-22 | 2024-07-30 | Pure Storage, Inc. | Host anomaly-based generation of snapshots |
| US11611576B2 (en) * | 2019-12-11 | 2023-03-21 | GE Precision Healthcare LLC | Methods and systems for securing an imaging system |
| US11637910B2 (en) * | 2020-08-20 | 2023-04-25 | Zscaler, Inc. | Cloud access security broker systems and methods with an in-memory data store |
| US11222134B2 (en) | 2020-03-04 | 2022-01-11 | Sotero, Inc. | System and methods for data encryption and application-agnostic querying of encrypted data |
| US11734121B2 (en) * | 2020-03-10 | 2023-08-22 | EMC IP Holding Company LLC | Systems and methods to achieve effective streaming of data blocks in data backups |
| US12185420B2 (en) * | 2020-08-07 | 2024-12-31 | Nokia Technologies Oy | Problem mitigation in subscriber profile management |
| US11979473B2 (en) | 2020-08-20 | 2024-05-07 | Zscaler, Inc. | Cloud access security broker systems and methods with an in-memory data store |
| CN112016701B (zh) * | 2020-09-09 | 2023-09-15 | 四川大学 | 一种融合时序和属性行为的异常变化检测方法及系统 |
| US11609704B2 (en) * | 2020-10-14 | 2023-03-21 | Netapp, Inc. | Visualization of outliers in a highly-skewed distribution of telemetry data |
| CN114546754A (zh) * | 2020-11-26 | 2022-05-27 | 北京四维图新科技股份有限公司 | 自动化智能监控方法、系统及地图数据云平台 |
| FI129600B (en) * | 2020-12-18 | 2022-05-31 | Elisa Oyj | Analyzing measurement results of a target system |
| CN112783682B (zh) * | 2021-02-01 | 2022-02-22 | 福建多多云科技有限公司 | 一种基于云手机服务的异常自动修复方法 |
| US20220283922A1 (en) * | 2021-03-02 | 2022-09-08 | Nice Ltd. | Systems and methods for analyzing and segmenting automation sequences |
| US11714997B2 (en) * | 2021-03-17 | 2023-08-01 | Paypal, Inc. | Analyzing sequences of interactions using a neural network with attention mechanism |
| US12381876B2 (en) * | 2021-04-22 | 2025-08-05 | Microsoft Technology Licensing, Llc | Anomaly-based mitigation of access request risk |
| US11310282B1 (en) * | 2021-05-20 | 2022-04-19 | Netskope, Inc. | Scoring confidence in user compliance with an organization's security policies |
| EP4352674A4 (en) * | 2021-05-20 | 2024-09-25 | Netskope, Inc. | Scoring confidence in user compliance with an organization's security policies |
| WO2022248892A1 (en) * | 2021-05-26 | 2022-12-01 | Citrix Systems, Inc. | Reconstructing execution call flows to detect anomalies |
| US11210155B1 (en) * | 2021-06-09 | 2021-12-28 | International Business Machines Corporation | Performance data analysis to reduce false alerts in a hybrid cloud environment |
| US20220400127A1 (en) * | 2021-06-09 | 2022-12-15 | Microsoft Technology Licensing, Llc | Anomalous user activity timing determinations |
| WO2023283423A1 (en) * | 2021-07-09 | 2023-01-12 | Sotero, Inc. | Autonomous machine learning methods for detecting and thwarting malicious database access |
| US20230040648A1 (en) * | 2021-08-03 | 2023-02-09 | Data Culpa, Inc. | String entropy in a data pipeline |
| US11818219B2 (en) * | 2021-09-02 | 2023-11-14 | Paypal, Inc. | Session management system |
| CN114764946B (zh) * | 2021-09-18 | 2023-08-11 | 北京甲板智慧科技有限公司 | 基于时序标准化的动作计数方法、系统和智能终端 |
| US12386956B1 (en) * | 2021-10-26 | 2025-08-12 | NTT DATA Services, LLC | Automatic discovery and enterprise control of a robotic workforce |
| US12547933B2 (en) * | 2021-10-29 | 2026-02-10 | Intuit Inc. | Metrics-based on-demand anomaly detection |
| US20230186221A1 (en) * | 2021-12-14 | 2023-06-15 | Fmr Llc | Systems and methods for job role quality assessment |
| CN114513435B (zh) * | 2022-01-14 | 2024-08-27 | 深信服科技股份有限公司 | 检测vpn隧道的方法、电子设备及存储介质 |
| US11663325B1 (en) * | 2022-04-05 | 2023-05-30 | Cyberark Software Ltd. | Mitigation of privilege escalation |
| US20230379346A1 (en) * | 2022-05-18 | 2023-11-23 | Microsoft Technology Licensing, Llc | Threat detection for cloud applications |
| US11743280B1 (en) * | 2022-07-29 | 2023-08-29 | Intuit Inc. | Identifying clusters with anomaly detection |
| US20240054195A1 (en) * | 2022-08-09 | 2024-02-15 | Soundhound, Inc. | Authorization of Action by Voice Identification |
| US20240080186A1 (en) * | 2022-09-07 | 2024-03-07 | Google Llc | Random Trigger for Automatic Key Rotation |
| US12032694B2 (en) | 2022-09-14 | 2024-07-09 | Sotero, Inc. | Autonomous machine learning methods for detecting and thwarting ransomware attacks |
| CN115223104B (zh) * | 2022-09-14 | 2022-12-02 | 深圳市睿拓新科技有限公司 | 一种基于场景识别的违章作业行为检测方法及系统 |
| US12333028B2 (en) * | 2022-10-21 | 2025-06-17 | Microsoft Technology Licensing, Llc | Access decision management system for digital resources |
| US20240177054A1 (en) * | 2022-11-30 | 2024-05-30 | Bank Of America Corporation | Automatic Alert Dispositioning using Artificial Intelligence |
| US12563053B2 (en) * | 2022-12-14 | 2026-02-24 | Onfido Ltd. | Methods and systems for fraud detection using relative movement of facial features |
| IL319912A (en) * | 2022-12-29 | 2025-05-01 | Varonis Systems Inc | Indicators of access vulnerability |
| US12348535B2 (en) | 2022-12-29 | 2025-07-01 | Varonis Systems, Inc. | Indicators of compromise of access |
| US12499325B2 (en) * | 2023-01-23 | 2025-12-16 | Capital One Services, Llc | Systems and methods for optimizing data labeling using entropy scores |
| US12489762B2 (en) | 2023-03-08 | 2025-12-02 | Kyndryl, Inc. | Bot detection in a virtual digital environment |
| US12189673B2 (en) * | 2023-04-10 | 2025-01-07 | Noname Gate Ltd. | Techniques for securing computing interfaces using clustering |
| US12445294B2 (en) * | 2023-06-14 | 2025-10-14 | Sophos Limited | Monitoring process data acquisition and exfiltration |
| US12519812B2 (en) * | 2023-06-23 | 2026-01-06 | Palo Alto Networks, Inc. | Multi-perspective user and entity behavior analytics for software-as-a-service applications |
| CN116884187B (zh) * | 2023-06-25 | 2026-02-06 | 吉林金域医学检验所有限公司 | 实验室监测方法、装置、电子设备及存储介质 |
| US12231434B1 (en) * | 2023-07-28 | 2025-02-18 | Normalyze, Inc. | Cloud data attack surface tracking using graph-based excessive privilege detection |
| US12321491B2 (en) * | 2023-07-28 | 2025-06-03 | Normalyze, Inc. | Risk event detection using activity and graph-based context for cloud data security posture management |
| US12443709B2 (en) * | 2023-08-17 | 2025-10-14 | Micro Focus Llc | Anomaly detection based on multi-level authentication |
| US20250173444A1 (en) * | 2023-11-29 | 2025-05-29 | Avalor Technologies, Ltd. | Techniques for providing identity cybersecurity risk assessment in digital environments |
| US12554848B2 (en) * | 2024-04-08 | 2026-02-17 | Salesforce, Inc. | Rule generation using entropy profile for malware detection |
| CN118569871B (zh) * | 2024-06-07 | 2024-11-26 | 神州融信云科技股份有限公司 | 一种金融服务应用异常数据在线监测方法及系统 |
Family Cites Families (52)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| DE4135034C2 (de) * | 1991-10-23 | 1995-04-13 | Deutsche Forsch Luft Raumfahrt | Einrichtung zur Bahnkontrolle von mindestens zwei kopositionierten geostationären Satelliten |
| US6671811B1 (en) * | 1999-10-25 | 2003-12-30 | Visa Internation Service Association | Features generation for use in computer network intrusion detection |
| US7657935B2 (en) * | 2001-08-16 | 2010-02-02 | The Trustees Of Columbia University In The City Of New York | System and methods for detecting malicious email transmission |
| US7191119B2 (en) | 2002-05-07 | 2007-03-13 | International Business Machines Corporation | Integrated development tool for building a natural language understanding application |
| CA2531410A1 (en) * | 2005-12-23 | 2007-06-23 | Snipe Network Security Corporation | Behavioural-based network anomaly detection based on user and group profiling |
| US8204982B2 (en) | 2006-09-14 | 2012-06-19 | Quova, Inc. | System and method of middlebox detection and characterization |
| US9609015B2 (en) | 2008-05-28 | 2017-03-28 | Zscaler, Inc. | Systems and methods for dynamic cloud-based malware behavior analysis |
| JP5155909B2 (ja) * | 2009-03-06 | 2013-03-06 | Sky株式会社 | 操作監視システム及び操作監視プログラム |
| US8566956B2 (en) * | 2010-06-23 | 2013-10-22 | Salesforce.Com, Inc. | Monitoring and reporting of data access behavior of authorized database users |
| KR20120105759A (ko) | 2011-03-16 | 2012-09-26 | 한국전자통신연구원 | 악성 코드 시각화 장치와 악성 코드 탐지 장치 및 방법 |
| US8621586B1 (en) * | 2011-09-28 | 2013-12-31 | Emc Corporation | Using baseline profiles in adaptive authentication |
| US8830057B1 (en) * | 2012-02-09 | 2014-09-09 | Google Inc. | Systems and methods for using robots to monitor environmental conditions in an environment |
| CN103338188B (zh) * | 2013-06-08 | 2016-02-10 | 北京大学 | 一种适用于移动云的客户端动态认证方法 |
| US9202249B1 (en) * | 2014-07-03 | 2015-12-01 | Palantir Technologies Inc. | Data item clustering and analysis |
| FR3024260B1 (fr) * | 2014-07-25 | 2016-07-29 | Suez Environnement | Procede pour detecter des anomalies dans un reseau de distribution, en particulier d'eau potable |
| US9805193B1 (en) | 2014-12-18 | 2017-10-31 | Palo Alto Networks, Inc. | Collecting algorithmically generated domains |
| US9807086B2 (en) | 2015-04-15 | 2017-10-31 | Citrix Systems, Inc. | Authentication of a client device based on entropy from a server or other device |
| US9917852B1 (en) * | 2015-06-29 | 2018-03-13 | Palo Alto Networks, Inc. | DGA behavior detection |
| RU2617631C2 (ru) * | 2015-09-30 | 2017-04-25 | Акционерное общество "Лаборатория Касперского" | Способ обнаружения работы вредоносной программы, запущенной с клиента, на сервере |
| NL2015680B1 (en) | 2015-10-29 | 2017-05-31 | Opt/Net Consulting B V | Anomaly detection in a data stream. |
| CN105677538B (zh) | 2016-01-11 | 2018-01-26 | 中国科学院软件研究所 | 一种基于故障预测的云计算系统自适应监测方法 |
| US11297098B2 (en) * | 2016-03-10 | 2022-04-05 | Telefonaktiebolaget Lm Ericsson (Publ) | DDoS defence in a packet-switched network |
| US10372910B2 (en) * | 2016-06-20 | 2019-08-06 | Jask Labs Inc. | Method for predicting and characterizing cyber attacks |
| US10140260B2 (en) * | 2016-07-15 | 2018-11-27 | Sap Se | Intelligent text reduction for graphical interface elements |
| US10715533B2 (en) * | 2016-07-26 | 2020-07-14 | Microsoft Technology Licensing, Llc. | Remediation for ransomware attacks on cloud drive folders |
| US10045218B1 (en) | 2016-07-27 | 2018-08-07 | Argyle Data, Inc. | Anomaly detection in streaming telephone network data |
| US10635563B2 (en) * | 2016-08-04 | 2020-04-28 | Oracle International Corporation | Unsupervised method for baselining and anomaly detection in time-series data for enterprise systems |
| US10075463B2 (en) | 2016-09-09 | 2018-09-11 | Ca, Inc. | Bot detection system based on deep learning |
| KR102464390B1 (ko) | 2016-10-24 | 2022-11-04 | 삼성에스디에스 주식회사 | 행위 분석 기반 이상 감지 방법 및 장치 |
| JP2018081655A (ja) | 2016-11-18 | 2018-05-24 | 富士通株式会社 | 不正操作監視装置、不正操作監視方法、不正操作監視プログラム、および不正操作監視システム |
| JP6800744B2 (ja) * | 2016-12-28 | 2020-12-16 | 株式会社日立製作所 | ホワイトリスト作成装置 |
| US9942255B1 (en) * | 2016-12-30 | 2018-04-10 | Google Llc | Method and system for detecting abusive behavior in hosted services |
| US10320819B2 (en) | 2017-02-27 | 2019-06-11 | Amazon Technologies, Inc. | Intelligent security management |
| CN107302547B (zh) * | 2017-08-21 | 2021-07-02 | 深信服科技股份有限公司 | 一种web业务异常检测方法及装置 |
| CN108334530B (zh) | 2017-08-24 | 2021-12-07 | 平安普惠企业管理有限公司 | 用户行为信息分析方法、设备及存储介质 |
| US20190109870A1 (en) | 2017-09-14 | 2019-04-11 | Commvault Systems, Inc. | Ransomware detection and intelligent restore |
| US10678692B2 (en) | 2017-09-19 | 2020-06-09 | Intel Corporation | Method and system for coordinating baseline and secondary prefetchers |
| US10623429B1 (en) * | 2017-09-22 | 2020-04-14 | Amazon Technologies, Inc. | Network management using entropy-based signatures |
| US11637844B2 (en) * | 2017-09-28 | 2023-04-25 | Oracle International Corporation | Cloud-based threat detection |
| US20190102361A1 (en) | 2017-09-29 | 2019-04-04 | Linkedin Corporation | Automatically detecting and managing anomalies in statistical models |
| US10735457B2 (en) * | 2017-10-03 | 2020-08-04 | Microsoft Technology Licensing, Llc | Intrusion investigation |
| US10417335B2 (en) | 2017-10-10 | 2019-09-17 | Colossio, Inc. | Automated quantitative assessment of text complexity |
| CN108040067B (zh) | 2017-12-26 | 2021-07-06 | 北京星河星云信息技术有限公司 | 一种云平台入侵检测方法、装置及系统 |
| CN108564592B (zh) * | 2018-03-05 | 2021-05-11 | 华侨大学 | 基于动态多种群集成差分进化算法的图像分割方法 |
| CN108334875A (zh) * | 2018-04-26 | 2018-07-27 | 南京邮电大学 | 基于自适应多阈值的静脉特征提取方法 |
| US11055411B2 (en) | 2018-05-10 | 2021-07-06 | Acronis International Gmbh | System and method for protection against ransomware attacks |
| US11555699B2 (en) | 2018-05-24 | 2023-01-17 | Nextnav, Llc | Systems and methods for determining when an estimated altitude of a mobile device can be used for calibration or location determination |
| US11030322B2 (en) | 2018-10-24 | 2021-06-08 | International Business Machines Corporation | Recommending the most relevant and urgent vulnerabilities within a security management system |
| US11687761B2 (en) | 2018-12-11 | 2023-06-27 | Amazon Technologies, Inc. | Improper neural network input detection and handling |
| US11470110B2 (en) * | 2019-02-08 | 2022-10-11 | Imperva, Inc. | Identifying and classifying community attacks |
| US20220126864A1 (en) * | 2019-03-29 | 2022-04-28 | Intel Corporation | Autonomous vehicle system |
| US11288111B2 (en) | 2019-04-18 | 2022-03-29 | Oracle International Corporation | Entropy-based classification of human and digital entities |
-
2020
- 2020-01-23 US US16/750,863 patent/US11288111B2/en active Active
- 2020-01-23 US US16/750,874 patent/US11757906B2/en active Active
- 2020-01-23 US US16/750,852 patent/US11930024B2/en active Active
- 2020-04-14 JP JP2021561816A patent/JP7576561B2/ja active Active
- 2020-04-14 CN CN202080034989.1A patent/CN113826368B/zh active Active
- 2020-04-14 CN CN202080038794.4A patent/CN113940034B/zh active Active
- 2020-04-14 WO PCT/US2020/028108 patent/WO2020214587A1/en not_active Ceased
- 2020-04-14 EP EP20722207.6A patent/EP3957048A1/en active Pending
- 2020-04-14 EP EP20722956.8A patent/EP3957049A1/en not_active Withdrawn
- 2020-04-14 WO PCT/US2020/028105 patent/WO2020214585A1/en not_active Ceased
- 2020-04-14 JP JP2021561804A patent/JP7539408B2/ja active Active
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| JPWO2020214585A5 (https=) | ||
| Wang et al. | Optimized ransomware detection through reverse bayer analysis of file system activities | |
| JPWO2020214587A5 (https=) | ||
| US11689549B2 (en) | Continuous learning for intrusion detection | |
| Rhode et al. | Early-stage malware prediction using recurrent neural networks | |
| Dahiya et al. | Network intrusion detection in big dataset using spark | |
| Dong et al. | Comparison deep learning method to traditional methods using for network intrusion detection | |
| Subbian et al. | Detecting large reshare cascades in social networks | |
| US20180115568A1 (en) | Method and device for detecting network intrusion | |
| Aissa et al. | Semi-supervised statistical approach for network anomaly detection | |
| MAHMOOD et al. | Intrusion detection system based on K-star classifier and feature set reduction | |
| CN112165471B (zh) | 一种工控系统流量异常检测方法、装置、设备及介质 | |
| US10984105B2 (en) | Using a machine learning model in quantized steps for malware detection | |
| Eren et al. | Multi-dimensional anomalous entity detection via poisson tensor factorization | |
| Baci et al. | Machine learning approach for intrusion detection systems as a cyber security strategy for Small and Medium Enterprises | |
| US20250088521A1 (en) | Identifying similarities in complex objects at scale | |
| Shoab et al. | GRU enabled intrusion detection system for IoT environment with swarm optimization and Gaussian random forest classification | |
| Thanh et al. | An approach to reduce data dimension in building effective network intrusion detection systems | |
| Abdel-Wahab et al. | A comparative study of machine learning and deep learning in network anomaly-based intrusion detection systems | |
| Benkerroum et al. | Enhancing forensic analysis using a machine learning-based approach | |
| Zyad et al. | An effective network intrusion detection based on truncated mean LDA | |
| AU2018218526B2 (en) | Identifying human interaction with a computer | |
| CN110197066B (zh) | 一种云计算环境下的虚拟机监控方法及监控系统 | |
| Bahl et al. | Detection rate analysis for user to root attack class using correlation feature selection | |
| Choukhairi et al. | Tree-driven intelligent security system for intrusion detection in IoT environment |