Micro-Clustering System and Method
    1.
    发明公开

    公开(公告)号:US20240311443A1

    公开(公告)日:2024-09-19

    申请号:US18401191

    申请日:2023-12-29

    申请人: McAfee, LLC

    发明人: German Lancioni

    IPC分类号: G06F18/232 G06F21/56

    摘要: A computer-implemented system and method of clustering a universe of featurized objects into micro-clusters includes selecting a vantage point having a feature vector; computing, for the featurized objects in the universe, respective distances from the vantage point, and sorting the featurized objects into a sorted container based on their distances from the vantage point; clustering adjacent objects into a plurality of micro-clusters based on determining that objects have a distance from a next adjacent object less than a maximum distance; and storing the micro-clusters onto a tangible computer-readable medium to modify operation of a computing apparatus based on objects in the micro-clusters.

    METHOD AND APPARATUS FOR DETECTING MALWARE VIA ANALYSIS OF A SCREEN CAPTURE

    公开(公告)号:US20240273201A1

    公开(公告)日:2024-08-15

    申请号:US18649457

    申请日:2024-04-29

    申请人: McAfee, LLC

    发明人: Hardik SHAH

    摘要: Methods, apparatus, systems and articles of manufacture for detecting malware via analysis of a screen capture are disclosed. An example apparatus includes at least one memory, instructions, and processor circuitry to execute the instructions. The processor circuitry is to detect execution of a process, capture a portion of a screen buffer as a captured image, after the execution of the process is detected, analyze the captured image to determine an image similarity to a stored image in a database, the database to at least store malicious images, and perform a responsive action when the image similarity satisfies a similarity threshold.

    Methods, systems, articles of manufacture and apparatus to verify application permission safety

    公开(公告)号:US12001558B2

    公开(公告)日:2024-06-04

    申请号:US17240610

    申请日:2021-04-26

    申请人: McAfee, LLC

    IPC分类号: G06F21/00 G06F21/57

    CPC分类号: G06F21/57 G06F2221/033

    摘要: Methods, apparatus, systems and articles of manufacture are disclosed to verify application permission safety. An example apparatus to identify unsafe permissions associated with a candidate app disclosed herein includes an app classifier interface to retrieve a cluster of apps associated with the candidate app, the candidate app including a requested permission set (RPS), a white knight (WK) identifier to identify a set of WK apps within the cluster, the set of WK apps associated with a designation of trust, a safe permission set (SPS) evaluator to generate an SPS list associated with the set of WK apps within the cluster, and an RPS identifier to determine whether permissions of the RPS are listed in the SPS list, the SPS evaluator further to designate first respective ones of the permissions of the RPS as safe when the first respective ones of the permissions are listed in the SPS list, and designate second respective ones of the permissions of the RPS as unsafe when the second respective ones of the permissions are absent from the SPS list.

    Remote authentication and passwordless password reset

    公开(公告)号:US11962574B2

    公开(公告)日:2024-04-16

    申请号:US16586674

    申请日:2019-09-27

    申请人: MCAFEE, LLC

    IPC分类号: H04L9/00 H04L9/08 H04L9/40

    摘要: Examples are disclosed herein to implement remote authentication and passwordless password reset. An example server includes: at least one processor to forward executable instructions to a client device, the executable instructions, when executed at the client device, to cause the client device to: authenticate a user of an account based on a biometric authentication factor; obtain a local storage key by decrypting an encrypted local storage key with a cloud key obtained from a remote authentication server, the cloud key associated with the client device; decrypt a key bag with the local storage key, the key bag including a content encryption key and an encrypted credential encrypted with the content encryption key, the encrypted credential associated with the user; and decrypt the encrypted credential with the content encryption key to obtain a credential without the user supplying a master password associated with the account.

    METHODS AND APPARATUS TO DISABLE SELECT PROCESSES FOR MALWARE PREVENTION

    公开(公告)号:US20240111869A1

    公开(公告)日:2024-04-04

    申请号:US17956471

    申请日:2022-09-29

    申请人: McAfee, LLC

    IPC分类号: G06F21/56 G06F21/57

    摘要: Methods, apparatus, systems, and articles of manufacture are disclosed to disable select processes for malware prevention, an apparatus comprising: at least one memory; instructions; and at least one processor to execute the instructions to cause the at least one processor to at least: identify execution of a computer process on a computing device; determine whether the identified computer process is in a list of computer processes to be monitored; in response to the identified computer process being listed in the list of computer processes to be monitored, determine an amount of time since last execution of the identified computer process; and suspend, in response to the amount of time since last execution meeting or exceeding a threshold time, execution of the identified computer process.