Invention Grant
- Patent Title: Security threat detection
-
Application No.: US14662456Application Date: 2015-03-19
-
Publication No.: US09602527B2Publication Date: 2017-03-21
- Inventor: Qianyong Yu
- Applicant: Fortinet, Inc.
- Applicant Address: US CA Sunnyvale
- Assignee: Fortinet, Inc.
- Current Assignee: Fortinet, Inc.
- Current Assignee Address: US CA Sunnyvale
- Agency: Hamilton, DeSanctis & Cha LLP
- Main IPC: G06F21/62
- IPC: G06F21/62 ; H04L29/06

Abstract:
Systems and methods for retrospective scanning of network traffic logs for missed threats using updated scan engines are provided. According to an embodiment, a network security device maintains a network traffic log that includes information associated with network activities observed within a private network. Responsive to an event, the network traffic log is retrospectively scanned in an attempt to identify a threat that was missed by a previous signature-based scan or a previous reputation-based scan of the observed network activities. When the threat is identified as a result of the retrospective scan, then remedial and/or preventive action is taken with respect to the threat.
Public/Granted literature
- US20160277431A1 SECURITY THREAT DETECTION Public/Granted day:2016-09-22
Information query