Microsoft Corporation
DETECTION OF ABNORMAL ENTITIES BASED ON SYNTACTIC GROUPING OF STRINGS
Last updated:
Abstract:
Unauthorized use of user credentials in a network is detected. Data indicative of text strings being used to access resources in the network is accessed. Regex models are determined for the text strings. Groupings of the regex models are determined based on an optimization of a cumulative weighted function. A regex model having a cumulative weighted function that exceeds a predetermined threshold is identified. An alert is generated when the cumulative weighted function for the identified regex model exceeds the predetermined threshold.
Status:
Application
Type:
Utility
Filling date:
4 May 2020
Issue date:
4 Nov 2021