Time-based detection of malware communications

    公开(公告)号:US10681069B2

    公开(公告)日:2020-06-09

    申请号:US15409760

    申请日:2017-01-19

    Abstract: A technique includes processing domain name system queries generated by a host to identify a subset of the queries for which domain names were not resolved. The technique includes using a time-based analysis to detect domain generation algorithm-based malware communications by the host, including detecting malicious communications by the host based at least in part on a number of the queries of the identified subset and a time span within which the queries of the subset were generated.

    Detection of email-related vulnerabilities

    公开(公告)号:US10516692B2

    公开(公告)日:2019-12-24

    申请号:US15500527

    申请日:2014-09-29

    Abstract: Examples relate to detection of email-related vulnerabilities. The examples disclosed herein enable monitoring, at a runtime, application programming interface (API) calls made by a server-based application for the API calls related to at least one of a plurality of email protocols. A request to obtain a first set of data indicating a result of a vulnerability attack may be received from a vulnerability scanner. The examples disclosed herein enable identifying, at the runtime, an API call that has been made based on the vulnerability attack in response to receiving the request. The first set of data may be obtained, at the runtime, based on the API call. The examples disclosed herein further enable providing the first set of data to the vulnerability scanner to detect a vulnerability in the first set of data.

    TIME-BASED DETECTION OF MALWARE COMMUNICATIONS

    公开(公告)号:US20180205753A1

    公开(公告)日:2018-07-19

    申请号:US15409760

    申请日:2017-01-19

    Abstract: A technique includes processing domain name system queries generated by a host to identify a subset of the queries for which domain names were not resolved. The technique includes using a time-based analysis to detect domain generation algorithm-based malware communications by the host, including detecting malicious communications by the host based at least in part on a number of the queries of the identified subset and a time span within which the queries of the subset were generated.

    APPLICATION TEST USING ATTACK SUGGESTIONS
    6.
    发明申请
    APPLICATION TEST USING ATTACK SUGGESTIONS 审中-公开
    使用攻击建议的应用测试

    公开(公告)号:US20160267277A1

    公开(公告)日:2016-09-15

    申请号:US15031454

    申请日:2014-01-31

    CPC classification number: G06F21/577 G06F2221/033

    Abstract: Example embodiments disclosed herein relate to a security test. A crawl of an application under test (AUT) is performed to determine an attack surface using crawl sessions. One or more parameters of the attack surface are probed during the respective crawl sessions. A trace is requested from an observer for the probe of the one or more parameters. Attack suggestions are received from the observer based on the trace of the one or more parameters.

    Abstract translation: 本文公开的示例实施例涉及安全测试。 执行被测试应用程序(AUT)的爬取,以使用爬网会话确定攻击面。 攻击表面的一个或多个参数在相应的爬网会话期间被探测。 从观察者请求跟踪以探测一个或多个参数。 基于一个或多个参数的跟踪,从观察者接收到攻击建议。

Patent Agency Ranking