- Patent Title: Discovering yet unknown malicious entities using relational data
-
Application No.: US14844379Application Date: 2015-09-03
-
Publication No.: US10320823B2Publication Date: 2019-06-11
- Inventor: Vojt{hacek over (e)}ch Létal , Tomá{hacek over (s)} Pevný , Petr Somol
- Applicant: Cisco Technology, Inc.
- Applicant Address: US CA San Jose
- Assignee: Cisco Technology, Inc.
- Current Assignee: Cisco Technology, Inc.
- Current Assignee Address: US CA San Jose
- Agency: Edell, Shapiro & Finnan, LLC
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06Q50/00

Abstract:
Data is collected from a database arrangement about behavior of observed entities, wherein the collected data includes one or more features associated with the observed entities. A probabilistic model is determined that correlates the one or more features with malicious and/or benign behavior of the observed entities. Data is collected from the database arrangement for unobserved entities that have at least one common feature with at least one of the observed entities. One of the unobserved entities is determined to be a malicious entity based on the at least one common feature and the probabilistic model. Network policies are applied to packets sent from the malicious entity.
Public/Granted literature
- US20160337389A1 DISCOVERING YET UNKNOWN MALICIOUS ENTITIES USING RELATIONAL DATA Public/Granted day:2016-11-17
Information query