Microsoft Corporation
Correlation-based network security
Last updated:
Abstract:
A correlation-based network security for network devices is disclosed. Correlations between a plurality of network devices are mapped based on telemetry from the network devices to determine correlated devices. The behaviors of the correlated devices are monitored based on telemetry received from the correlated devices to determine a deviant device of the plurality of devices. A prioritized alert for the plurality of network devices is generated from a security alert received for the deviant device.
Status:
Grant
Type:
Utility
Filling date:
9 Jan 2020
Issue date:
5 Apr 2022