Invention Grant
- Patent Title: Computer-implemented system and method for creating an environment for detecting malicious content
-
Application No.: US15885709Application Date: 2018-01-31
-
Publication No.: US10652261B2Publication Date: 2020-05-12
- Inventor: Kurt Kokko , Damien Lindauer , Brad Lovering , Lynn Kasel
- Applicant: Splunk Inc.
- Applicant Address: US CA San Francisco
- Assignee: Splunk Inc.
- Current Assignee: Splunk Inc.
- Current Assignee Address: US CA San Francisco
- Agency: Nicholson De Vos Webster & Elliot LLP
- Main IPC: H04L29/00
- IPC: H04L29/00 ; H04L29/06 ; G06F21/54 ; G06F21/53 ; G06N20/00

Abstract:
Techniques and mechanisms are disclosed for creating an environment for detecting malicious network traffic. A test computer network including a plurality of cloned nodes is created. The plurality of cloned nodes in the test computer network corresponds to at least some of a plurality of target nodes of a host computer network, and the test computer network has no network connectivity to the host computer network. Sensors in both the host computer network and the test computer network generate network flow records that are sent to a detection processing pipeline. The detection processing pipeline merges the records received from the sensors and uses the merged records to train at least one model used to identify instances of malicious network traffic.
Public/Granted literature
- US20180219896A1 COMPUTER-IMPLEMENTED SYSTEM AND METHOD FOR CREATING AN ENVIRONMENT FOR DETECTING MALICIOUS CONTENT Public/Granted day:2018-08-02
Information query