×

Method for the detection and visualization of anomalous behaviors in a computer network

  • US 7,930,752 B2
  • Filed: 11/17/2006
  • Issued: 04/19/2011
  • Est. Priority Date: 11/18/2005
  • Status: Active Grant
First Claim
Patent Images

1. A method for the detection of anomalous behaviors in a computer network, comprising the steps of:

  • collecting data over a defined period of time relating to a set of connections comprising a plurality of connections initiated by components in the network including connections that occurred over said defined period of time, said components selected from any one or more of a group including users, nodes and applications, said data including data identifying components, applications and destination ports,sending said data to an anomaly detection system (ADS) platform,computing from said data a multidimensional chart displaying said components, applications, and destination ports in the form of icons along separate and essentially parallel axes, where the related components, applications and destination ports are interlinked between adjacent axes with lines to visualize the set of connections.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×