Invention Grant
- Patent Title: Sample selection for data analysis for use in malware detection
-
Application No.: US14934398Application Date: 2015-11-06
-
Publication No.: US10015192B1Publication Date: 2018-07-03
- Inventor: Jan Stiborek , Martin Rehak
- Applicant: CISCO TECHNOLOGY, INC.
- Applicant Address: US CA San Jose
- Assignee: Cisco Technology, Inc.
- Current Assignee: Cisco Technology, Inc.
- Current Assignee Address: US CA San Jose
- Agent Cindy Kaplan
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F17/30

Abstract:
In one embodiment, a method includes creating a set of network related indicators of compromise at a computing device, the set associated with a malicious network operation, identifying at the computing device, samples comprising at least one of the indicators of compromise in the set, creating sub-clusters of the samples at the computing device, and selecting at the computing device, one of the samples from the sub-clusters for additional analysis, wherein results of the analysis provide information for use in malware detection. An apparatus and logic are also disclosed herein.
Information query