Patented Behavioral Analysis Powers Abnormal's Account Takeover Protection
Discovering Email Account Compromise Through Assessments of Digital Activities
U.S. Patent No.10,911,489
Abnormal has patented a smarter account compromise detection system that uniquely factors in how legitimate users behave. This technology harnesses the power of AI to establish a pattern of normal behavior, and then flags any activity that seems out of the ordinary. By comparing current activity to what’s normal for that account, Abnormal can catch and stop takeovers before they become a problem. Let’s take a deeper look.

The diagram above illustrates, at a high level, the structure of Abnormal’s threat intelligence system, which combines a variety of signals to generate rich, AI-powered insights that detect account compromise and strengthen organizational security.
How Our Unique AI Works

Abnormal's patented AI-powered approach analyzes data from multiple sources—such as user behavior, email content, login patterns, and communication history—to establish a rich, multifaceted behavioral baseline. This advanced system generates precise compromise signals that alert you to suspicious activity across your organization. The result is a powerful AI threat intelligence engine that proactively prevents damage—without disrupting business operations.
Why This Matters
Email account compromise can take many forms, but attackers often target employees with access to sensitive financial data or the authority to move money—like paying invoices or initiating wire transfers. These attacks can result in serious financial losses and lasting damage when successful. With AI-powered threats on the rise, traditional security tools are struggling to keep up. Sophisticated attacks are harder to spot, and old-school defenses aren’t built to handle what’s coming.
Abnormal’s patented AI technology delivers next-generation protection that adapts to evolving threats—so your organization is always ready to take on even the most advanced attacks.
Meet the Inventor

Sanjay Jeyakumar
Sanjay Jeyakumar is the CTO and Co-Founder of Abnormal AI, where he also leads Research and Development. A veteran engineering leader with over 17 years of experience, Sanjay has consistently been at the forefront of innovation—building intelligent systems that solve complex problems at a massive scale.
Realizing that true AI-powered cybersecurity requires a deep understanding of normal user behavior, Sanjay pioneered a patented system that detects compromised email accounts through behavioral baselines and anomaly detection—an industry-first approach now protected under U.S. Patent No.10,911,489.
Under his technical leadership, Abnormal’s AI-native platform has redefined what's possible in threat detection and prevention—helping the company earn recognition as a Leader in the 2024 Gartner® Magic Quadrant™.
Patented Three-Step Method For Smarter Account Takeover Detection
- 1. Establish Normal Behavior: The process begins with collecting historical data like email activity, mail filters, and sign-in events. Over time, the system learns what “normal” looks like for each user based on these behavioral patterns.
- 2. Monitor in Real Time: When new activity occurs—such as a sign-in or an email being sent—the system collects and analyzes this real-time data, comparing it to the established behavior profile.
- 3. Detect and Respond to Anomalies: If the new activity significantly deviates from past patterns, the system calculates a deviation metric to estimate the likelihood of compromise. Based on this metric, it can then determine whether to allow the activity or take protective action.