×

Unobtrusive protection for large-scale data breaches utilizing user-specific data object access budgets

  • US 9,674,201 B1
  • Filed: 12/29/2015
  • Issued: 06/06/2017
  • Est. Priority Date: 12/29/2015
  • Status: Active Grant
First Claim
Patent Images

1. A method in a security gateway for unobtrusively protecting against large-scale data breaches over time, wherein the security gateway is communicatively coupled between a plurality of client end stations and one or more servers that store and serve a plurality of files, the method comprising:

  • receiving, at the security gateway from one or more of the plurality of client end stations during one or more time periods, a plurality of file access requests sent on behalf of a plurality of users belonging to an enterprise, wherein the plurality of file access requests seek access to one or more of the plurality of files stored by the one or more servers, wherein each of the plurality of file access requests includes an immutable identifier of one of the files, wherein each of the plurality of users is allocated a budget for each of the one or more time periods;

    for each file access request of the plurality of file access requests, performing the following;

    determining an access cost for the file access request based on characteristics of the file access request, wherein lower access costs are indicative of file access requests that are part of expected file access consumption for the plurality of users belonging to the enterprise, andcharging the determined access cost against the budget for that user corresponding to the one of the one or more time periods when the file access request was received; and

    transmitting alert messages, but not preventing either a transmission of the plurality of file access requests to the one or more servers or further but different security-related analysis of the plurality of file access requests by the security gateway, based on different ones of the plurality of users exceeding their respective budgets.

View all claims
  • 5 Assignments
Timeline View
Assignment View
    ×
    ×