PROFILING CYBER THREATS DETECTED IN A TARGET ENVIRONMENT AND AUTOMATICALLY GENERATING ONE OR MORE RULE BASES FOR AN EXPERT SYSTEM USABLE TO PROFILE CYBER THREATS DETECTED IN A TARGET ENVIRONMENT
Patent №
US 9,503,472
Granted
2016-11-22
Filed 2014
Owner
CYBERLYTIC LIMITED
Lab
—
AI components
4
ml · kr · planning · hardware
Assignment
Recorded
Dataset
AIPD
2023_r1 edition
Application
14562541
A computer implemented method of profiling cyber threats detected in a target environment, comprising: receiving, from a Security Information and Event Manager (SIEM) monitoring the target environment, alerts triggered by a detected potential cyber threat, and, for each alert: retrieving captured packet data related to the alert; extracting data pertaining to a set of attributes from captured packet data triggering the alert; applying fuzzy logic to data pertaining to one or more of the attributes to determine values for one or more output variables indicative of a level of an aspect of risk attributable to the cyber threat.
AI classification
Ownership
CYBERLYTIC LIMITED
assignment · 346690036
Assignors
LAIDLAW, STUART, HAROLD, ST JOHN, HILLICK, MARK, SYFI SOLUTIONS LIMITED, KYBEIRE LTD
On an employer assignment, the assignors are typically the inventors.