The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Aug. 09, 2022

Filed:

Dec. 11, 2018
Applicant:

Forcepoint, Llc, Austin, TX (US);

Inventors:

Eduardo Luiggi, Ellicott City, MD (US);

Christopher Poirel, Baltimore, MD (US);

Ann Irvine, Baltimore, MD (US);

Assignee:

Forcepoint, LLC, Austin, TX (US);

Attorneys:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
H04L 29/00 (2006.01); H04L 9/40 (2022.01); G06F 16/28 (2019.01);
U.S. Cl.
CPC ...
H04L 63/1425 (2013.01); G06F 16/285 (2019.01); H04L 63/1433 (2013.01);
Abstract

A method, system and computer-usable medium are disclosed for identifying security risks to a computer system based on a distribution of categorical features of events. Certain embodiments are directed to a computer-implemented method comprising: receiving a stream of events, the stream of events including a plurality of events; extracting a categorical feature from the plurality of events, where the categorical feature includes a set of categorical feature members, where the set of categorical feature members are generated on the fly from string values included in the extracted categorical feature; constructing a distribution for the categorical feature based on categorical feature members extracted from the plurality of events; and, analyzing the distribution of the categorical feature to identify one or more security risk factors.


Find Patent Forward Citations

Loading…