TOR-BASED MALWARE DETECTION
    2.
    发明公开

    公开(公告)号:US20240154997A1

    公开(公告)日:2024-05-09

    申请号:US18387937

    申请日:2023-11-08

    CPC classification number: H04L63/145 G06N20/00 H04L63/1425

    Abstract: A machine learning model for classifying encrypted traffic as benign or malicious without having to decrypt the traffic is provided that used traffic patterns from network logs to classify the traffic based on learned patterns for malware, and is capable of identifying zero-day malware is provided via: extracting encrypted traffic from communication logs for a network; identifying, from the encrypted traffic, while still encrypted, traffic patterns for users of the network; and classifying, via a machine learning model, the encrypted traffic as benign traffic or malicious traffic without decrypting the encrypted traffic according to the traffic patterns identified.

Patent Agency Ranking