Invention Grant
- Patent Title: Automated software safeness categorization with installation lineage and hybrid information sources
-
Application No.: US16040086Application Date: 2018-07-19
-
Publication No.: US10929539B2Publication Date: 2021-02-23
- Inventor: Jungwhan Rhee , Zhenyu Wu , Lauri Korts-Parn , Kangkook Jee , Zhichun Li , Omid Setayeshfar
- Applicant: NEC Laboratories America, Inc. , NEC Corporation
- Applicant Address: US NJ Princeton; JP Tokyo
- Assignee: NEC Laboratories America, Inc.,NEC Corporation
- Current Assignee: NEC Laboratories America, Inc.,NEC Corporation
- Current Assignee Address: US NJ Princeton; JP Tokyo
- Agent Joseph Kolodka
- Main IPC: G06F21/57
- IPC: G06F21/57 ; H04L29/06 ; G06F21/56 ; G06F11/34 ; G06F21/12 ; G06F21/55

Abstract:
Systems and methods are disclosed for enhancing cybersecurity in a computer system by detecting safeness levels of executables. An installation lineage of an executable is identified in which entities forming the installation lineage include at least an installer of the monitored executable, and a network address from which the executable is retrieved. Each entity of the entities forming the installation lineage is individually analyzed using at least one safeness analysis. Results of the at least one safeness analysis of each entity are inherited by other entities in the lineage of the executable. A backtrace result for the executable is determined based on the inherited safeness evaluation of the executable. A total safeness of the executable, based on at least the backtrace result, is evaluated against a set of thresholds to detect a safeness level of the executable. The safeness level of the executable is output on a display screen.
Public/Granted literature
- US20190050571A1 AUTOMATED SOFTWARE SAFENESS CATEGORIZATION WITH INSTALLATION LINEAGE AND HYBRID INFORMATION SOURCES Public/Granted day:2019-02-14
Information query