Compressibility Metric-based Detection of a Ransomware Threat to a Storage System

    公开(公告)号:US20220245241A1

    公开(公告)日:2022-08-04

    申请号:US17725182

    申请日:2022-04-20

    摘要: An illustrative method includes a data protection system determining a first compressibility metric associated with write traffic processed by a storage system, the first compressibility metric indicating an amount of storage space saved if the write traffic is compressed; determining a second compressibility metric associated with read traffic processed by a storage system, the second compressibility metric indicating an amount of storage space saved if the read traffic is compressed; determining, based on a comparison of the first compressibility metric with the second compressibility metric, that the write traffic is less compressible than the read traffic; determining, based on the write traffic being less compressible than the read traffic, that the storage system is possibly being targeted by a security threat; and performing, based on the determining that the storage system is possibly being targeted by the security threat, a remedial action with respect to the storage system.

    Recovery Dataset Management For Security Threat Monitoring

    公开(公告)号:US20210216628A1

    公开(公告)日:2021-07-15

    申请号:US16917030

    申请日:2020-06-30

    IPC分类号: G06F21/55 G06F3/06

    摘要: An illustrative method includes a data protection system directing a storage system to generate recovery datasets over time in accordance with a data protection parameter set, the recovery datasets usable to restore data maintained by the storage system to a state corresponding to a selectable point in time, determining that the storage system is possibly being targeted by a security threat, and modifying, in response to the determining that the storage system is possibly being targeted by the security threat, the data protection parameter set for one or more of the recovery datasets.