Invention Grant
- Patent Title: Cyber-security system and method for weak indicator detection and correlation to generate strong indicators
-
Application No.: US15638262Application Date: 2017-06-29
-
Publication No.: US10601848B1Publication Date: 2020-03-24
- Inventor: Sundararaman Jeyaraman , Ramaswamy Ramaswamy
- Applicant: FireEye, Inc.
- Applicant Address: US CA Milpitas
- Assignee: FireEye, Inc.
- Current Assignee: FireEye, Inc.
- Current Assignee Address: US CA Milpitas
- Agency: Rutan & Tucker, LLP
- Main IPC: G06F12/14
- IPC: G06F12/14 ; H04L29/06

Abstract:
A method for detecting a cyber-attack is described. The method features (i) collecting a first plurality of weak indicators, (ii) grouping a second plurality of weak indicators from the first plurality of weak indicators where the second plurality of weak indicators being lesser in number than the first plurality of weak indicators, and (iii) performing a correlation operation between the second plurality of weak indicators and one or more patterns or sequences of indicators associated with known malware. A weak indicator of the first plurality of weak indicators corresponds to data that, by itself, is not definitive as to whether the data is associated with a cyber-attack being conducted on a source of the weak indicator.
Information query