- 专利标题: Detecting lateral movement by malicious applications
-
申请号: US16224291申请日: 2018-12-18
-
公开(公告)号: US11184392B2公开(公告)日: 2021-11-23
- 发明人: Andrew J. Thomas , Daniel Stutz
- 申请人: Sophos Limited
- 申请人地址: GB Abingdon
- 专利权人: Sophos Limited
- 当前专利权人: Sophos Limited
- 当前专利权人地址: GB Abingdon
- 代理机构: Strategic Patents, P.C.
- 主分类号: H04L29/06
- IPC分类号: H04L29/06 ; G06F11/00 ; G06F21/56 ; G06F21/55 ; G06F21/44 ; G06F21/57 ; G06F21/64 ; H04L12/24 ; H04L12/26 ; H04L29/08 ; G06F21/45 ; G06F21/40 ; G06F21/43 ; H04L9/32 ; H04L12/58
摘要:
Attempts at lateral movement are detected by monitoring failed login attempts across a number of endpoints in a network. By configuring endpoints across the network to report unsuccessful login attempts and monitoring these login attempts at a central location, patterns of attempts and failures may advantageously be detected and used to identify malicious attempts at lateral movement within the network before any unauthorized lateral movement is achieved.
公开/授权文献
- US20190124097A1 DETECTING LATERAL MOVEMENT BY MALICIOUS APPLICATIONS 公开/授权日:2019-04-25
信息查询