Invention Grant
- Patent Title: Automated preemptive polymorphic deception
-
Application No.: US17516529Application Date: 2021-11-01
-
Publication No.: US12107888B2Publication Date: 2024-10-01
- Inventor: Xue Jun Wu , Bhushan Prasad Khanal , Swagat Dasgupta , Changhwan Oh , J. Braund
- Applicant: ExtraHop Networks, Inc.
- Applicant Address: US WA Seattle
- Assignee: ExtraHop Networks, Inc.
- Current Assignee: ExtraHop Networks, Inc.
- Current Assignee Address: US WA Seattle
- Agency: Branch Partners PLLC
- Agent John W. Branch
- Main IPC: H04L9/40
- IPC: H04L9/40 ; H04L43/062 ; H04L43/08 ; H04L43/12

Abstract:
Embodiments are directed to monitoring network traffic using network monitoring computers (NMCs). Anomalous events may be classified based on the monitored network traffic and attack models such that the classification determines that targets of the anomalous events may be currently subject to attacks by entities communicating on the networks. A honeypot trap may be provided in the networks based on the classified events such that the honeypot trap mimics characteristics of the targets. The portions of the network traffic associated with the honeypot trap may be monitored. Characteristics of the attacks may be determined based on the monitored portions of network traffic. Reports that include information based on the characteristics of the attacks may be generated.
Information query