Invention Grant
- Patent Title: Systems and methods for detecting malicious use of digital certificates
- Patent Title (中): 检测恶意使用数字证书的系统和方法
-
Application No.: US14089999Application Date: 2013-11-26
-
Publication No.: US09407644B1Publication Date: 2016-08-02
- Inventor: Tao Cheng , Kevin Roundy , Jie Fu , Zhi Kai Li , Ying Li
- Applicant: Symantec Corporation
- Applicant Address: US CA Mountain View
- Assignee: Symantec Corporation
- Current Assignee: Symantec Corporation
- Current Assignee Address: US CA Mountain View
- Agency: ALG Intellectual Property, LLC
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F15/18

Abstract:
A computer-implemented method for detecting malicious use of digital certificates may include determining that a digital certificate is invalid. The method may further include locating, within the invalid digital certificate, at least one field that was previously identified as being useful in distinguishing malicious use of invalid certificates from benign use of invalid certificates. The method may also include determining, based on analysis of information from the field of the invalid digital certificate, that the invalid digital certificate is potentially being used to facilitate malicious communications. The method may additionally include performing a security action in response to determining that the invalid digital certificate is potentially being used to facilitate malicious communications. Various other methods, systems, and computer-readable media are disclosed.
Information query