User Entity Behavior Analytics (UEBA) is a cybersecurity methodology that uses machine learning and statistical modeling to establish a behavioral baseline for users, devices, servers, and applications, then detects anomalous activities that may indicate a security threat. Unlike traditional rule-based systems, UEBA analyzes sequences of events across multiple data sources—such as authentication logs, network traffic, and file access—to identify subtle, non-linear patterns of malicious intent, including insider threats, credential compromise, and lateral movement.
