- 专利标题: Data mining to identify malicious activity
-
申请号: US14015582申请日: 2013-08-30
-
公开(公告)号: US09894088B2公开(公告)日: 2018-02-13
- 发明人: Joseph Ward , Andrew Hobson
- 申请人: DAMBALLA, INC.
- 申请人地址: US GA Atlanta
- 专利权人: Damballa, Inc.
- 当前专利权人: Damballa, Inc.
- 当前专利权人地址: US GA Atlanta
- 代理机构: Pepper Hamilton LLP
- 主分类号: H04L29/06
- IPC分类号: H04L29/06
摘要:
Systems and methods may determine suspicious network traffic. A monitoring system comprising a processor in communication with a network may monitor network traffic to or from an asset associated with the network. The monitoring system may assess the network traffic to determine a source and/or destination for the network traffic anchor content of the network traffic. The monitoring system may determine whether the network traffic is suspicious network traffic based on the assessed source and/or destination and/or content. When the network traffic is determined to be suspicious network traffic, the monitoring system may capture metadata associated with the suspicious network traffic and store the metadata in a database in communication with the processor. When the network traffic is not determined to be suspicious network traffic, the monitoring system may disregard metadata associated with the network traffic.
公开/授权文献
- US20140068763A1 DATA MINING TO IDENTIFY MALICIOUS ACTIVITY 公开/授权日:2014-03-06
信息查询