Invention Grant
- Patent Title: Systems and methods of malware detection
-
Application No.: US16786101Application Date: 2020-02-10
-
Publication No.: US11716337B2Publication Date: 2023-08-01
- Inventor: Jordan S. Webster , Christopher S. Stinson
- Applicant: IronNet Cybersecurity, Inc.
- Applicant Address: US MD Fulton
- Assignee: IRONNET CYBERSECURITY, INC.
- Current Assignee: IRONNET CYBERSECURITY, INC.
- Current Assignee Address: US VA McLean
- Agency: Fitch, Even, Tabin & Flannery LLP
- Main IPC: H04L9/40
- IPC: H04L9/40 ; H04L43/16 ; H04L43/022 ; G06F17/18 ; G06F21/56 ; H04L69/322 ; G06N20/00

Abstract:
Systems and methods for detecting suspicious malware by analyzing data such as transfer protocol data or logs from a host within an enterprise is provided. The systems and methods include a database for storing current data and historical data obtained from the network and a detection module and an optional display. The embodiments herein extract information from non-encrypted transfer protocol metadata, determine a plurality of features, utilize an outlier detection model that is based on historical behaviors, calculate a suspiciousness score, and create alerts for analysis by users when the score exceeds a threshold. In doing so, the systems and methods of the present invention improve the ability to identify suspicious outliers or potential malware on an iterative basis over time.
Public/Granted literature
- US20210250364A1 SYSTEMS AND METHODS OF MALWARE DETECTION Public/Granted day:2021-08-12
Information query