Invention Grant
- Patent Title: Mitigating malware impact by utilizing sandbox insights
-
Application No.: US16709379Application Date: 2019-12-10
-
Publication No.: US11277438B2Publication Date: 2022-03-15
- Inventor: Udi Yavo , Roy Katmor , Ido Kelson
- Applicant: Fortinet, Inc.
- Applicant Address: US CA Sunnyvale
- Assignee: Fortinet, Inc.
- Current Assignee: Fortinet, Inc.
- Current Assignee Address: US CA Sunnyvale
- Agency: HDC Intellectual Property Law, LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F21/53 ; G06F21/55 ; G06F21/56

Abstract:
Systems and methods for mitigating the impact of malware by reversing malware related modifications in a computing device are provided. According to an embodiment, a sandbox service running within a network security platform protecting an enterprise network receives a file containing malware and associated contextual information from an endpoint security solution running on an endpoint device, which has been infected by the malware. The sandbox service captures information regarding a first series of actions performed by the malware and based on the first series of actions generates a remediation script specifying a second series of actions that are configured to restore the endpoint device to a pre-infected state. The network security platform causes the endpoint device to be returned to the pre-infected state by causing the endpoint security solution to execute the remediation script on the endpoint device.
Public/Granted literature
- US20210176257A1 MITIGATING MALWARE IMPACT BY UTILIZING SANDBOX INSIGHTS Public/Granted day:2021-06-10
Information query