Microsoft Corporation
Automatic generation of detection alerts
Last updated:
Abstract:
Using a set of anomalies indicative of a malicious pattern of behavior collected from data to determine new alerts for anomalies included in subsequently collected data. A set of anomalies found in data collected from data sources is accessed. The set of anomalies is determined by a prior analysis to be indicative of a malicious pattern of behavior by entities associated with the set of anomalies. Data that is subsequently collected from the data sources is searched to determine if any of the data includes the set of anomalies. Alerts are generated for any of the subsequently collected data that includes the set of anomalies.
Status:
Grant
Type:
Utility
Filling date:
8 Aug 2019
Issue date:
29 Mar 2022