US 11,853,173 B1
Log file manipulation detection
Cesar Rodriguez Bravo, Alajuela (CR)
Assigned to KYNDRYL, INC., New York, NY (US)
Filed by Kyndryl, Inc., New York, NY (US)
Filed on Mar. 20, 2023, as Appl. No. 18/186,506.
Int. Cl. G06F 15/16 (2006.01); G06F 11/16 (2006.01); G06F 11/34 (2006.01)
CPC G06F 11/1629 (2013.01) [G06F 11/3409 (2013.01); G06F 2201/81 (2013.01)] 20 Claims
OG exemplary drawing
 
1. A computer-implemented method, comprising:
identifying a plurality of terms within a corpus of log files from a computer system; computing a frequency metric for each of the plurality of terms;
creating a cluster, wherein the cluster includes a tuple for each term of the plurality of terms;
computing a score based on a difference between the frequency metrics in the cluster and corresponding frequency metrics in a new log file; and
executing at least one action in response to the score exceeding a predetermined threshold.