Invention Grant
- Patent Title: System and method for detection of targeted attacks
- Patent Title (中): 用于检测目标攻击的系统和方法
-
Application No.: US14484891Application Date: 2014-09-12
-
Publication No.: US09386031B2Publication Date: 2016-07-05
- Inventor: Victor V. Yablokov
- Applicant: Kaspersky Lab ZAO
- Applicant Address: RU Moscow
- Assignee: AO Kaspersky Lab
- Current Assignee: AO Kaspersky Lab
- Current Assignee Address: RU Moscow
- Agency: Arent Fox LLP
- Agent Michael Fainberg
- Main IPC: G06F11/00
- IPC: G06F11/00 ; H04L29/06

Abstract:
Methods, systems, and computer programs for detecting targeted attacks on compromised computer. An example method includes receiving from a plurality of computer systems data about the network resource, wherein each of the plurality of computer systems has a set of parameters and associated parameter values; detecting presence of a suspect indicator in the respective data received from each of a first group of the plurality of computer systems; detecting absence of the suspect indicator in the respective data received from each of a second group of the plurality of computer systems; determining at least one suspect parameter and at least one suspect parameter value; and estimating a probability of the targeted attack from the network resource based on the suspect indicator, the at least one suspect parameter, and the at least one parameter value.
Public/Granted literature
- US20160080398A1 SYSTEM AND METHOD FOR DETECTION OF TARGETED ATTACKS Public/Granted day:2016-03-17
Information query