Invention Grant
- Patent Title: Identifying malware-infected network devices through traffic monitoring
-
Application No.: US14635761Application Date: 2015-03-02
-
Publication No.: US10313372B2Publication Date: 2019-06-04
- Inventor: David Paul Heilig
- Applicant: David Paul Heilig
- Agency: James M. Smedley LLC
- Agent James Michael Smedley, Esq.
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
The present invention generally relates to detecting malicious network activity coming from network devices such as routers and firewalls. Specifically, embodiments of the present invention provide for detecting stealth malware on a network device by comparing inbound and outbound network traffic to discover packets originating from the network device and packets that violate configuration rules. When combined with a network traffic monitor server configured to monitor actual network traffic reports and to receive known network traffic reports from host computers, the system can detect stealth network traffic originating from both network devices and host computer systems.
Public/Granted literature
- US20160261611A1 IDENTIFYING MALWARE-INFECTED NETWORK DEVICES THROUGH TRAFFIC MONITORING Public/Granted day:2016-09-08
Information query