-
公开(公告)号:US20140007190A1
公开(公告)日:2014-01-02
申请号:US13538439
申请日:2012-06-29
IPC分类号: G06F21/00
CPC分类号: G06Q50/01 , G06Q10/00 , H04L63/104 , H04L63/107 , H04L63/14 , H04L63/1441 , H04L63/20
摘要: Techniques for social sharing security information between client entities forming a group are described herein. The group of client entities is formed as a result of a security server providing one or more secure mechanisms for forming a group among client entities, the client entities each belonging to a different organization. The security service then automatically shares security information of a client entity in the group with one or more other client entities in the group.
摘要翻译: 本文描述了形成组的客户实体之间的用于社交共享安全信息的技术。 客户端实体组由安全服务器的结果形成,该安全服务器提供一个或多个安全机制,用于在客户端实体之间形成组,每个属于不同组织的客户实体。 然后,安全服务自动与组中的一个或多个其他客户端实体共享组中的客户端实体的安全信息。
-
公开(公告)号:US08606910B2
公开(公告)日:2013-12-10
申请号:US13326896
申请日:2011-12-15
IPC分类号: G06F15/173
CPC分类号: H04L45/125 , H04L45/02 , H04L45/308 , H04L47/2433 , H04L47/2441 , H04L51/12 , H04L67/322
摘要: Methods, systems and apparatus, including computer programs encoded on a computer storage medium, for receiving, at a global server system, from each of a plurality of local network devices, network data specifying network communication activity at the local network device, wherein the plurality of local network devices collectively provide backbone communications facilities for multiple networks; aggregating, at the global server system, the network data from each of the local network devices; analyzing, at the global server system, the aggregated network data to identify network activities; generating, at the global server system, update data based on the analysis of the aggregated network data, the update data including instructions for the local network devices for processing network communications to or from the local network devices; and transmitting from the global server system the update data to the local network devices.
摘要翻译: 方法,系统和装置,包括在计算机存储介质上编码的计算机程序,用于在全局服务器系统处从多个本地网络设备中的每一个接收指定本地网络设备处的网络通信活动的网络数据,其中,多个 的本地网络设备共同为多个网络提供骨干通信设施; 在全球服务器系统中聚合来自每个本地网络设备的网络数据; 在全球服务器系统上分析聚合网络数据以识别网络活动; 在所述全球服务器系统中,基于所述聚合网络数据的分析来更新数据,所述更新数据包括用于处理到本地网络设备的网络通信的本地网络设备的指令; 并从全局服务器系统向本地网络设备发送更新数据。
-
43.
公开(公告)号:US20120331556A1
公开(公告)日:2012-12-27
申请号:US13170163
申请日:2011-06-27
IPC分类号: G06F21/00
CPC分类号: H04L63/1408 , H04L63/0227 , H04L63/0236 , H04L63/0245 , H04L63/14 , H04L63/1416
摘要: A method is provided in one example embodiment that includes generating a fingerprint based on properties extracted from data packets received over a network connection and requesting a reputation value based on the fingerprint. A policy action may be taken on the network connection if the reputation value received indicates the fingerprint is associated with malicious activity. The method may additionally include displaying information about protocols based on protocol fingerprints, and more particularly, based on fingerprints of unrecognized protocols. In yet other embodiments, the reputation value may also be based on network addresses associated with the network connection.
摘要翻译: 在一个示例实施例中提供了一种方法,其包括基于通过网络连接接收的数据分组提取的属性生成指纹,并且基于指纹请求信誉值。 如果接收到的信誉值指示指纹与恶意活动相关联,则可以对网络连接进行策略动作。 该方法可以另外包括基于协议指纹显示关于协议的信息,更具体地,基于无法识别的协议的指纹。 在其他实施例中,信誉值也可以基于与网络连接相关联的网络地址。
-
公开(公告)号:US20090254663A1
公开(公告)日:2009-10-08
申请号:US12417459
申请日:2009-04-02
IPC分类号: G06F15/173 , G06F17/30 , G06F15/16
CPC分类号: H04L45/125 , H04L45/02 , H04L45/308 , H04L47/2433 , H04L47/2441 , H04L51/12 , H04L67/322
摘要: Methods and systems for operation upon one or more data processors for prioritizing transmission of communications associated with an entity based upon reputation information associated with the entity.
摘要翻译: 用于在一个或多个数据处理器上操作的方法和系统,用于基于与所述实体相关联的信誉信息来优先化与实体相关联的通信的传输。
-
公开(公告)号:US08635690B2
公开(公告)日:2014-01-21
申请号:US12020370
申请日:2008-01-25
申请人: Dmitri Alperovitch , Sven Krasser
发明人: Dmitri Alperovitch , Sven Krasser
IPC分类号: G06F12/14
CPC分类号: H04L51/12 , G06F11/008
摘要: Methods and systems for processing electronic communications based upon reputation. Reputation of an entity associated with the electronic communication can be generated. The communication can be placed in a queue based upon the reputation. The queued communication can be processed based upon updated information about the entity.
摘要翻译: 基于声誉处理电子通信的方法和系统。 可以生成与电子通信相关联的实体的信誉。 通信可以根据信誉放在队列中。 可以基于关于实体的更新信息来处理排队的通信。
-
公开(公告)号:US08589503B2
公开(公告)日:2013-11-19
申请号:US12417459
申请日:2009-04-02
IPC分类号: G06F15/16
CPC分类号: H04L45/125 , H04L45/02 , H04L45/308 , H04L47/2433 , H04L47/2441 , H04L51/12 , H04L67/322
摘要: Methods and systems for operation upon one or more data processors for prioritizing transmission of communications associated with an entity based upon reputation information associated with the entity.
摘要翻译: 用于在一个或多个数据处理器上操作的方法和系统,用于基于与所述实体相关联的信誉信息来优先化与实体相关联的通信的传输。
-
公开(公告)号:US20120084441A1
公开(公告)日:2012-04-05
申请号:US13326896
申请日:2011-12-15
IPC分类号: G06F15/173
CPC分类号: H04L45/125 , H04L45/02 , H04L45/308 , H04L47/2433 , H04L47/2441 , H04L51/12 , H04L67/322
摘要: Methods, systems and apparatus, including computer programs encoded on a computer storage medium, for receiving, at a global server system, from each of a plurality of local network devices, network data specifying network communication activity at the local network device, wherein the plurality of local network devices collectively provide backbone communications facilities for multiple networks; aggregating, at the global server system, the network data from each of the local network devices; analyzing, at the global server system, the aggregated network data to identify network activities; generating, at the global server system, update data based on the analysis of the aggregated network data, the update data including instructions for the local network devices for processing network communications to or from the local network devices; and transmitting from the global server system the update data to the local network devices.
摘要翻译: 方法,系统和装置,包括在计算机存储介质上编码的计算机程序,用于在全局服务器系统处从多个本地网络设备中的每一个接收指定本地网络设备处的网络通信活动的网络数据,其中多个 的本地网络设备共同为多个网络提供骨干通信设施; 在全球服务器系统中聚合来自每个本地网络设备的网络数据; 在全球服务器系统上分析聚合网络数据以识别网络活动; 在所述全球服务器系统中,基于所述聚合网络数据的分析来更新数据,所述更新数据包括用于处理到本地网络设备的网络通信的本地网络设备的指令; 并从全局服务器系统向本地网络设备发送更新数据。
-
公开(公告)号:US20090119740A1
公开(公告)日:2009-05-07
申请号:US11935756
申请日:2007-11-06
IPC分类号: H04L9/00
CPC分类号: H04L63/1425 , H04L63/20
摘要: Methods and systems for adjusting control settings associated with filtering or classifying communications to a computer or a network. The adjustment of the control settings can include adjustment of policy and/or security settings associated with the computer or network. Ranges associated with the control settings can also be provided in some implementations.
摘要翻译: 用于调整与将计算机或网络通信过滤或分类相关联的控制设置的方法和系统。 控制设置的调整可以包括调整与计算机或网络相关联的策略和/或安全设置。 与控制设置相关的范围也可以在一些实现中提供。
-
公开(公告)号:US08719352B2
公开(公告)日:2014-05-06
申请号:US12696828
申请日:2010-01-29
申请人: Sven Krasser , Dmitri Alperovitch , Yuchun Tang , Yuanchen He , Jonathan Zdziarski , Mark Gilbert
发明人: Sven Krasser , Dmitri Alperovitch , Yuchun Tang , Yuanchen He , Jonathan Zdziarski , Mark Gilbert
IPC分类号: G06F15/16 , G06F15/173
CPC分类号: G06F21/552
摘要: A system derives a reputation for a plurality of network addresses, the reputation of each network address determined by analyzing a plurality of high-level email features related to one or more emails originating from the network address. The plurality of high-level email features include domain registration analysis, hashed term frequency indexing, persistent communication, address age, correlation analysis, zombie detection, and hash vault matching.
摘要翻译: 系统通过分析与源自网络地址的一个或多个电子邮件相关的多个高级电子邮件特征来确定多个网络地址的信誉,每个网络地址的声誉。 多个高级电子邮件功能包括域注册分析,散列术语频率索引,持久通信,地址年龄,相关分析,僵尸检测和哈希库匹配。
-
公开(公告)号:US20120216248A1
公开(公告)日:2012-08-23
申请号:US13460878
申请日:2012-05-01
CPC分类号: H04L63/1425 , H04L63/20
摘要: Methods and systems for managing data communications are described. The method includes receiving a data communication; analyzing the data communication to determine a particular type of sender or recipient activity associated with the data communication based at least in part on an application of a plurality of tests to the data communication; assigning a total risk level to the data communication based at least in part on one or more risks associated with the particular type of sender or recipient activity and a tolerance for each of the one or more risks; comparing the total risk level assigned to the data communication with a maximum total acceptable level of risk; and allowing the data communication to be delivered to a recipient in response to the comparison indicating that the total risk level assigned to the data communication does not exceed the maximum total acceptable level of risk.
摘要翻译: 描述用于管理数据通信的方法和系统。 该方法包括接收数据通信; 分析数据通信以至少部分地基于对数据通信的多个测试的应用来确定与数据通信相关联的特定类型的发送者或接收者活动; 至少部分地基于与特定类型的发送者或接收者活动相关联的一个或多个风险以及针对所述一个或多个风险中的每一个的容忍度来将数据通信的总风险级别分配给数据通信; 将分配给数据通信的总风险水平与最大总可接受风险水平进行比较; 并且响应于指示分配给数据通信的总风险级别不超过最大总可接受风险水平的比较,允许数据通信被传送到接收者。
-
-
-
-
-
-
-
-
-