Invention Grant
- Patent Title: Detection of adversary lateral movement in multi-domain IIOT environments
-
Application No.: US17073535Application Date: 2020-10-19
-
Publication No.: US11522882B2Publication Date: 2022-12-06
- Inventor: Amin Hassanzadeh , Azzedine Benameur , Robin Lynn Burkett , Apoorv Krishak , Chien An Chen , Nahid Farhady Ghalaty
- Applicant: Accenture Global Solutions Limited
- Applicant Address: IE Dublin
- Assignee: Accenture Global Solutions Limited
- Current Assignee: Accenture Global Solutions Limited
- Current Assignee Address: IE Dublin
- Agency: Fish & Richardson P.C.
- Main IPC: H04L9/40
- IPC: H04L9/40 ; H04L41/22 ; H04L41/147 ; G06N7/00 ; H04L41/0631 ; G06N20/00 ; G06F21/55 ; H04L67/10

Abstract:
Implementations are directed to methods for detecting and identifying advanced persistent threats (APTs) in networks, including receiving first domain activity data from a first network domain and second domain activity data from a second network domain, including multiple alerts from the respective first and second network domains and where each alert of the multiple alerts results from one or more detected events in the respective first or second network domains. A classification determined for each alert of the multiple alerts with respect to a cyber kill chain. A dependency is then determined for each of one or more pairs of alerts and a graphical visualization of the multiple alerts is generated, where the graphical visualization includes multiple nodes and edges between the nodes, each node corresponding to the cyber kill chain and representing at least one alert, and each edge representing a dependency between alerts.
Public/Granted literature
- US20210037029A1 DETECTION OF ADVERSARY LATERAL MOVEMENT IN MULTI-DOMAIN IIOT ENVIRONMENTS Public/Granted day:2021-02-04
Information query