Anomaly detection of entity behavior

A method including: receiving a set of data representing usage by entities of objects in a computing resource; extracting, from the initial set of data, one or more feature vectors representing the usage by one of the entities with respect to the objects; generating, from the feature vectors, a feat...

Full description

Saved in:
Bibliographic Details
Main Authors Cohen, Aviad, Farchi, Eitan Daniel, Allouche, Yair
Format Patent
LanguageEnglish
Published 28.05.2024
Subjects
Online AccessGet full text

Cover

Loading…
More Information
Summary:A method including: receiving a set of data representing usage by entities of objects in a computing resource; extracting, from the initial set of data, one or more feature vectors representing the usage by one of the entities with respect to the objects; generating, from the feature vectors, a feature matrix; with respect to each entry in the feature matrix: (i) assigning a binary value to the entry, based on a predefined usage threshold, (ii) identifying, among the one or more entities, k nearest neighbor entities with respect to the one of the entities, based on a predefined distance threshold, and (iii) modifying the usage value of the entry, based on usage values associated with each of the k nearest neighbor entities with respect to the one of the objects; and updating the feature matrix with the modified usage values, to obtain a manipulated feature matrix.
Bibliography:Application Number: US202318142584