Invention Grant
- Patent Title: Multi-tiered sandbox based network threat detection
-
Application No.: US15448476Application Date: 2017-03-02
-
Publication No.: US10534909B2Publication Date: 2020-01-14
- Inventor: Michael F. Chalmandrier-Perna
- Applicant: Fortinet, Inc.
- Applicant Address: US CA Sunnyvale
- Assignee: Fortinet, Inc.
- Current Assignee: Fortinet, Inc.
- Current Assignee Address: US CA Sunnyvale
- Agency: Jaffery Watson Mendonsa & Hamilton, LLP
- Main IPC: G06F21/55
- IPC: G06F21/55 ; G06F21/53 ; G06F9/455

Abstract:
Systems and methods for multi-tiered sandbox based network threat detection are provided. According to one embodiment, a file is received by a computer system. The file is caused to exhibit a first set of behaviors by processing the file within a virtualization application based environment of the computer system. The virtualization application based environment is created based on an application to which the file pertains. The file is further caused to exhibit a second set of behaviors by processing the file within a container based environment of the computer system. Differences, if any, between the first set of behaviors and the second set of behaviors. Finally, the file is classified as malicious when the differences are greater than a predefined or configurable threshold.
Public/Granted literature
- US20180253551A1 MULTI-TIERED SANDBOX BASED NETWORK THREAT DETECTION Public/Granted day:2018-09-06
Information query