Invention Grant
- Patent Title: Systems and methods for detecting malicious hands-on-keyboard activity via machine learning
-
Application No.: US17491575Application Date: 2021-10-01
-
Publication No.: US12034751B2Publication Date: 2024-07-09
- Inventor: Nash Borges
- Applicant: Secureworks Corp.
- Applicant Address: US DE Wilmington
- Assignee: Secureworks Corp.
- Current Assignee: Secureworks Corp.
- Current Assignee Address: US DE Wilmington
- Agency: Womble Bond Dickinson (US) LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06N20/20 ; H04L9/40

Abstract:
A method for detecting unauthorized and/or malicious hands-on-keyboard activity in an information handling system derived from the telemetry from one or more client systems, tokenizing a plurality of partial values/idiosyncrasies detected in the telemetry to form a plurality of tokens, aggregating the plurality of tokens or features over a selected time window to at least partially develop an aggregate feature vector, submitting the aggregate feature vector to one or more machine learning subsystems, and applying an ensemble model to one or more outputs from the one or more machine learning subsystems to generate an overall behavioral threat score of the potentially malicious hands-on-keyboard activity.
Information query