US 11,687,648 B2
Deriving and surfacing insights regarding security threats
Yu Zhou Lee, San Francisco, CA (US); Kai Jiang, San Francisco, CA (US); Su Li Debbie Tan, San Francisco, CA (US); Geng Sng, San Francisco, CA (US); Cheng-Lin Yeh, San Francisco, CA (US); Lawrence Stockton Moore, San Francisco, CA (US); Sanny Xiao Lang Liao, San Francisco, CA (US); Joey Esteban Cerquera, San Francisco, CA (US); Jeshua Alexis Bratman, San Francisco, CA (US); Sanjay Jeyakumar, San Francisco, CA (US); and Nishant Bhalchandra Karandikar, San Francisco, CA (US)
Assigned to Abnormal Security Corporation, San Francisco, CA (US)
Filed by Abnormal Security Corporation, San Francisco, CA (US)
Filed on Dec. 9, 2021, as Appl. No. 17/547,141.
Claims priority of provisional application 63/123,865, filed on Dec. 10, 2020.
Prior Publication US 2022/0188411 A1, Jun. 16, 2022
Int. Cl. G06F 21/55 (2013.01)
CPC G06F 21/552 (2013.01) [G06F 2221/034 (2013.01)] 23 Claims
OG exemplary drawing
 
1. A system, comprising:
a processor configured to:
establish, via an application programming interface, a connection with a storage medium that includes a series of communications received by an employee of an enterprise and obtain an email that is addressed to the employee;
determine a plurality of features associated with the obtained email;
use a plurality of facet models to analyze the determined features, wherein at least one facet model included in the plurality of facet models is a topic model that identifies a topic that is mentioned either directly or indirectly in the email;
determine, based at least in part on the analysis, that the email poses a security threat;
determine a prioritized set of information to provide as output in a report, wherein the prioritized set of information is representative of why the email was determined to pose a security threat; and
provide at least a portion of the prioritized set of information as output in an interface; and
a memory coupled to the processor and configured to provide the processor with instructions.