UEBA in cybersecurity
User entity and behavior analytics (UEBA) is an advanced cybersecurity approach that uses machine learning and behavioral analytics to detect compromised entities such as firewalls, servers, and databases, as well as malicious insiders and cyberattacks, including distributed denial-of-service (DDoS) attacks, phishing attempts, malware, and ransomware.
UEBA works by analyzing logs and alerts from connected data sources to build a baseline of behavioral profiles for all of an organization’s users and entities across time. UEBA relies on machine learning capabilities, combined with other techniques, to automatically detect compromised assets.
Not only can UEBA detect potential breaches, but it can also determine the sensitivity of any particular asset, as well as the potential severity of its breach.
UEBA works by analyzing logs and alerts from connected data sources to build a baseline of behavioral profiles for all of an organization’s users and entities across time. UEBA relies on machine learning capabilities, combined with other techniques, to automatically detect compromised assets.
Not only can UEBA detect potential breaches, but it can also determine the sensitivity of any particular asset, as well as the potential severity of its breach.
Follow Microsoft Security