Invention Grant
- Patent Title: System and method for tracking malware route and behavior for defending against cyberattacks
-
Application No.: US15273928Application Date: 2016-09-23
-
Publication No.: US10097569B2Publication Date: 2018-10-09
- Inventor: Il-Hoon Jeong , Hwa-Seong Lee , Chang-Hee Choi , Ho-Sang Yun
- Applicant: AGENCY FOR DEFENSE DEVELOPMENT
- Applicant Address: KR Daejeon
- Assignee: AGENCY FOR DEFENSE DEVELOPMENT
- Current Assignee: AGENCY FOR DEFENSE DEVELOPMENT
- Current Assignee Address: KR Daejeon
- Agency: LRK Patent Law Firm
- Priority: KR10-2016-0078563 20160623
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
An attack tracking system includes multiple hosts in which first event data concerning object behavior are collected and pieces of host-based event information are created therefrom; a tracking information database server storing the pieces of host-based event information; a tracking information analysis server creating behavior events by defining malware behavior from the pieces of host-based event information, retrieving targets to be analyzed from the pieces of host-based event information and the behavior events based on a preset input value, creating first tracking contexts for identifying the malware behavior by analyzing the relationship between the pieces of host-based event information and the relationship between a set of the pieces of host-based event information and a set of the behavior events, and creating second tracking contexts tracking malware routes and behavior events between the multiple hosts by analyzing the correlation between the first tracking contexts.
Public/Granted literature
- US20170374086A1 SYSTEM AND METHOD FOR TRACKING MALWARE ROUTE AND BEHAVIOR FOR DEFENDING AGAINST CYBERATTACKS Public/Granted day:2017-12-28
Information query