- 专利标题: Method for detecting malicious scripts through modeling of script structure
-
申请号: US15953953申请日: 2018-04-16
-
公开(公告)号: US11314862B2公开(公告)日: 2022-04-26
- 发明人: Sanjay Sawhney , Swapnil Bhalode , Andrew Joseph Davidson , Somesh Jha , Vaibhav Rastogi
- 申请人: Tala Security, Inc.
- 申请人地址: US CA Fremont
- 专利权人: Tala Security, Inc.
- 当前专利权人: Tala Security, Inc.
- 当前专利权人地址: US CA Fremont
- 主分类号: G06F21/00
- IPC分类号: G06F21/00 ; G06F21/56 ; G06N5/04 ; G06F21/55 ; G06N20/00
摘要:
Disclosed herein are enhancements for operating a communication network to detect malware in scripts of web applications. In one implementation, a method for modeling the structure of embedded unclassified scripts to compare the abstract dynamism of similar scripts. The method may determine structure of unclassified end user browser script by building abstract structure using code from unclassified end user browser script; compare determined structure of unclassified end user browser script with a plurality of generalized abstract structures; if the determined structure of unclassified end user browser script matches within a predetermined threshold of any of the plurality of generalized abstract structures, then the unclassified end user browser script is classified as benign, otherwise the determined structure is classified as malicious. This, in turn, provides a scalable and efficient way of identifying benign, malicious, known and unknown scripts from a script available in full or in part.
公开/授权文献
信息查询