-
公开(公告)号:US20200372014A1
公开(公告)日:2020-11-26
申请号:US16880575
申请日:2020-05-21
Inventor: Yazan Boshmaf , Husam Al Jawaheri , Mashael Al Sabah
IPC: G06F16/23 , G06F16/245
Abstract: A system and method for performing full-stack blockchain analytics is disclosed. For example, blockchain analysis system comprises a blockchain operation module which integrates with the blockchain network and contains the data source that contains a plurality of blockchain data. The analysis system further comprises a blockchain analysis module that parses and analyzes the blockchain data. Additionally, the system comprises a blockchain tag module that determines a plurality of customizable tags based on the blockchain data and external data sources, and defines a low-level query interface that integrates customizable tags as objects into the blockchain data. The analysis system also comprises a blockchain search module that receives a blockchain search request, maintains a plurality of search indexes and a plurality of user-specific data, and determines a blockchain search result based on the blockchain search request and a plurality of tagged and untagged blockchain data.
-
公开(公告)号:US20240202824A1
公开(公告)日:2024-06-20
申请号:US18535740
申请日:2023-12-11
Inventor: Yazan Boshmaf , Sajitha Liyanage
CPC classification number: G06Q40/04 , G06Q20/4016 , G06Q2220/00
Abstract: Smart contract auditing may be provided by: receiving a request to audit a prospective smart contract; executing a smart contracts auditing model; extracting raw data from at least one blockchain using the smart contracts auditing model; analyzing the raw data using at least two security analyzers; aggregating the output of the at least two security analyzers according to an aggregator; and generating a smart contracts security report from the aggregated output for the prospective smart contract, which includes a smart contracts security score.
-
公开(公告)号:US11546377B2
公开(公告)日:2023-01-03
申请号:US17229386
申请日:2021-04-13
Inventor: Yazan Boshmaf , Mashael Al Sabah , Mohamed Nabeel
IPC: H04L29/06 , H04L29/12 , H04L9/40 , G06F21/50 , H04L61/4511
Abstract: The main objective of Certificate Transparency (CT) is to detect mis-issued certificates or rouge certificate authorities. It has been observed that phishing sites have been increasingly acquiring certificates to look more legitimate and reach more victims, thus providing an opportunity to predict phishing domains early. The present disclosure provides systems and methods for early detection of phishing and benign domain traces in CT logs. The provided system may predict phishing domains early even before content is available via time-, issuer-, and certificate-based characteristics that are used to identify sets of CT-based inexpensive and novel features. The CT-features are augmented with other features including passive DNS (pDNS) and domain-based lexical features.
-
公开(公告)号:US20240171605A1
公开(公告)日:2024-05-23
申请号:US18386486
申请日:2023-11-02
Inventor: Yazan Boshmaf , Isuranga Don
IPC: H04L9/40 , G06F16/53 , G06F16/951
CPC classification number: H04L63/1441 , G06F16/53 , G06F16/951
Abstract: Scalable darkweb analytics are provided by crawling content offered by a plurality of onion services; sanitizing the content from each onion service of the plurality of onion services into sanitized content that represents potentially malicious content in a non-malicious form; storing, in a database, the sanitized content in association with a unique identity for each onion service of the plurality of onion services; receiving a request for information related to a given onion service of the plurality of onion services; and providing, in response to the request, the information based on the sanitized content
-
公开(公告)号:US20210320946A1
公开(公告)日:2021-10-14
申请号:US17229386
申请日:2021-04-13
Inventor: Yazan Boshmaf , Mashael Al Sabah , Mohamed Nabeel
Abstract: The main objective of Certificate Transparency (CT) is to detect mis-issued certificates or rouge certificate authorities. It has been observed that phishing sites have been increasingly acquiring certificates to look more legitimate and reach more victims, thus providing an opportunity to predict phishing domains early. The present disclosure provides systems and methods for early detection of phishing and benign domain traces in CT logs. The provided system may predict phishing domains early even before content is available via time-, issuer-, and certificate-based characteristics that are used to identify sets of CT-based inexpensive and novel features. The CT-features are augmented with other features including passive DNS (pDNS) and domain-based lexical features.
-
-
-
-