Invention Grant
- Patent Title: Detection and mitigation of time-delay based network attacks
-
Application No.: US15640381Application Date: 2017-06-30
-
Publication No.: US10708283B2Publication Date: 2020-07-07
- Inventor: J. Dennis Bergström
- Applicant: Fortinet, Inc.
- Applicant Address: US CA Sunnyvale
- Assignee: Fortinet, Inc.
- Current Assignee: Fortinet, Inc.
- Current Assignee Address: US CA Sunnyvale
- Agency: Jaffery Watson Mendonsa & Hamilton LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F21/53 ; H04L12/58 ; H04L29/08 ; G06F21/56

Abstract:
Systems and methods for mitigation of time-delay based network attacks are provided. According to one embodiment, an email directed to a user of an enterprise and containing a potentially malicious link is received by a mail server of the enterprise. At a first time, a file to which the potentially malicious link points is evaluated within a sandbox environment and a first hash value is generated based on contents of the file. At a second time, evaluating, by the sandbox environment, a second file to which the potentially malicious link points, including downloading the second file to which the potentially malicious link points to at the second time and generating a second hash value based on contents of the second file. When the two hash values differ, then the second file is treated as a suspicious or high risk file or is evaluated within the sandbox environment.
Public/Granted literature
- US20190007426A1 DETECTION AND MITIGATION OF TIME-DELAY BASED NETWORK ATTACKS Public/Granted day:2019-01-03
Information query