摘要:
The present invention generally relates to systems and methods for classifying executable files as likely malware or likely benign. The techniques utilize temporally-ordered network behavioral artifacts together with machine learning techniques to perform the classification. Because they rely on network behavioral artifacts, the disclosed techniques may be applied to executable files with obfuscated code.
摘要:
Provided is a method for providing Registration Data Access Protocol ("RDAP") responses. The method includes obtaining, at a RDAP client over a network, a RDAP query for RDAP data from a user; providing, by the RDAP client, the RDAP query to one or more thick RDAP services; obtaining an answer to the RDAP query from the one or more thick RDAP services; and providing the answer to the user.
摘要:
Embodiments relate to systems, devices, and computing-implemented methods for generating domain name suggestions by receiving (100, 200) a domain name suggestion input that includes textual data, segmenting (110, 210) the textual data into tokens, determining (130, 230) a list of possible affixes to the textual data, determining (130, 230) conditional probabilities for the possible affixes using a language model and the tokens, ranking (140, 240) the list of possible affixes based on the conditional probabilities to generate a ranked list of affixes, and generating (150, 250) domain name suggestions based on the ranked list of affixes.
摘要:
The invention relates to a method for maintaining transport address associations for a transport address translation entity (4) positioned for data flow interception between a first device (2) and a second device (3), the maintaining method being intended for being implemented by the first device (2) and comprising: a step of sending (E10, F10, H10) a first message (R1, R3, R5) having a first so-called private transport address to the second device in accordance with a first transport protocol, said first message being capable of triggering a first association by the transport address translation entity of a first so-called public address with the first private address and with the first transport protocol; upon reception of a response (M1', M3', M5') to the first message originating from the second device, a step of sending (E90, F90, H90) a second message having a second private transport address to the second device in accordance with a second transport protocol, said second message being capable of triggering a second association by the transport address translation entity (4) of said second private address with a second so-called public address and with the second transport protocol, the second message further containing so-called correspondence information, also included in the first message and/or in the response to the first message, and capable of triggering, after reception of the second message by the second device, the establishment of correspondence by the second device between the second public transport address and the first public transport address.