Invention Grant
- Patent Title: System and method for detection of targeted attack based on information from multiple sources
-
Application No.: US15165636Application Date: 2016-05-26
-
Publication No.: US09860272B2Publication Date: 2018-01-02
- Inventor: Victor V. Yablokov
- Applicant: AO Kaspersky Lab
- Applicant Address: RU Moscow
- Assignee: AO KASPERSKY LAB
- Current Assignee: AO KASPERSKY LAB
- Current Assignee Address: RU Moscow
- Agency: Arent Fox LLP
- Agent Michael Fainberg
- Main IPC: G06F11/00
- IPC: G06F11/00 ; H04L29/06

Abstract:
Disclosed are methods, systems, and computer programs for detecting targeted attacks on compromised computer from multiple sources. An example method includes obtaining data from multiple computer systems and devices connected with one another in a communications network to determine a possibility of a targeted attack from a network resource, the data comprising information relating to the network resource and a set of parameters of each computer system or device in accessing the network resource; detecting discrepancies in the obtained data; forming and sending queries to a group of computer systems and devices detecting the possibility of the targeted attack with the set of parameters of the group of computer systems and devices in accessing the network resource; and calculating a probability of the targeted attack from the network resource based at least upon information received from the group of computer systems and devices in response to the queries.
Public/Granted literature
- US20160277442A1 SYSTEM AND METHOD FOR DETECTION OF TARGETED ATTACK BASED ON INFORMATION FROM MULTIPLE SOURCES Public/Granted day:2016-09-22
Information query