The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Nov. 18, 2025

Filed:

Nov. 21, 2023
Applicant:

Rubrik, Inc., Palo Alto, CA (US);

Inventors:

Oscar Annen, San Jose, CA (US);

Sumeet Bharatbhai Varma, Sunnyvale, CA (US);

Guilherme Vale Ferreira Menezes, San Jose, CA (US);

Stephen Chu, San Francisco, CA (US);

Mohit Gupta, Palo Alto, CA (US);

Assignee:

Rubrik, Inc., Palo Alto, CA (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 9/40 (2022.01); G06F 9/455 (2018.01); G06F 16/953 (2019.01); G06F 18/214 (2023.01); G06F 21/56 (2013.01); G06F 21/57 (2013.01); G06N 20/00 (2019.01);
U.S. Cl.
CPC ...
H04L 63/1425 (2013.01); G06F 9/45558 (2013.01); G06F 16/953 (2019.01); G06F 18/214 (2023.01); G06F 21/566 (2013.01); G06F 21/577 (2013.01); G06N 20/00 (2019.01); H04L 63/1416 (2013.01); H04L 63/1433 (2013.01); G06F 2009/4557 (2013.01); G06F 2009/45595 (2013.01);
Abstract

Techniques for implementing a scalable automated training framework for anomaly and ransomware detection are disclosed. In some embodiments, a computer system performs operations comprising: instantiating a plurality of virtual machines, each one of the virtual machines being loaded with a corresponding file system; simulating user actions and ransomware on the virtual machines, the simulating of user actions and ransomware on the virtual machines causing changes to the corresponding file systems of the virtual machines; for each one of the plurality of virtual machines, generating a corresponding metadata file based on one or more corresponding snapshots of the virtual machine, the one or more corresponding snapshots indicating the changes to the corresponding file system of the virtual machine; and training a ransomware detection model using a machine learning algorithm and training data, the training data being based on the corresponding metadata files of the virtual machines.


Find Patent Forward Citations

Loading…