The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
May. 26, 2015

Filed:

Oct. 02, 2013
Applicant:

Hrl Laboratories, Llc, Malibu, CA (US);

Inventors:

David L. Allen, Thousand Oaks, CA (US);

Tsai-Ching Lu, Wynnewood, PA (US);

Eric P. Tressler, Calabasas, CA (US);

Hankyu Moon, Oak Park, CA (US);

Assignee:

HRL Laboratories, LLC, Malibu, CA (US);

Attorney:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
H04L 29/06 (2006.01); G06F 21/57 (2013.01); G06F 12/14 (2006.01); G06F 12/16 (2006.01);
U.S. Cl.
CPC ...
H04L 63/1441 (2013.01); H04L 63/20 (2013.01); G06F 21/577 (2013.01);
Abstract

Described is a system for detecting insider threats in a network. In detecting the insider threat, the system receives data from the network relevant to network activity and extracts observable actions from the data relevant to a mission. The observable actions are combined to provide contextual cues and reasoning results. Based on the observable actions and reasoning results, proposed security policy updates are proposed to force insiders into using more observable actions. Finally, the system detects potential insider threats through analyzing the observable actions and reasoning results.


Find Patent Forward Citations

Loading…