Invention Grant
- Patent Title: Identifying cyber adversary behavior
-
Application No.: US16367739Application Date: 2019-03-28
-
Publication No.: US11228612B2Publication Date: 2022-01-18
- Inventor: Sulakshan Vajipayajula , Kaushal Kiran Kapadia , Stephen Cameron Will , Ilgen Banu Yuceer , Kevin Tabb
- Applicant: International Business Machines Corporation
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agency: Yee & Associates, P.C.
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
Identifying cyber adversary behavior on a computer network is provided. Individual security events are received from multiple threat intelligence data sources. A security incident corresponding to an attack on at least one element of the computer network, the security incident being described by the individual security events received from the multiple threat intelligence data sources, is matched to a defined cyber adversary objective in a structured framework of a plurality of defined cyber adversary objectives and a related technique associated with the defined cyber adversary objective used by a cyber adversary in the attack. A set of mitigation actions is performed on the computer network based on matching the security incident corresponding to the attack on the computer network to the defined cyber adversary objective and the related technique.
Public/Granted literature
- US20200314141A1 Identifying Cyber Adversary Behavior Public/Granted day:2020-10-01
Information query