-
公开(公告)号:US12149561B2
公开(公告)日:2024-11-19
申请号:US18142858
申请日:2023-05-03
Applicant: KnowBe4, Inc.
Inventor: Alin Irimie , Stu Sjouwerman , Greg Kras , Eric Sites
Abstract: Systems and methods of embodiments are described of a campaign controller that establishes a model for using a plurality of types of exploits based on at least results of simulated phishing communications using those exploits, and uses the model to communicate a first simulated phishing communication to one or more devices of a user where the type of exploit used for the first simulated phishing communication is selected using the model. The campaign controller applies either artificial intelligence or machine learning to the results of simulated phishing communications to establish the model. The campaign controller selects the exploit by applying either artificial intelligence or machine learning to one or more attributes of the user and/or one or more responses from the user.
-
公开(公告)号:US12143413B2
公开(公告)日:2024-11-12
申请号:US17897212
申请日:2022-08-28
Applicant: KnowBe4, Inc.
Inventor: Alin Irimie , Stu Sjouwerman , Greg Kras , Eric Sites
IPC: H04L9/40 , G06F16/951 , G06F21/56 , G06F30/20 , G06N5/02 , G06N20/00 , H04L51/212 , H04W12/122 , H04L51/23 , H04W12/128
Abstract: A system and method is described that sends multiple simulated phishing emails, text messages, and/or phone calls (e.g., via VoIP) varying the quantity, frequency, type, sophistication, and combination using machine learning algorithms or other forms of artificial intelligence. In some implementations, some or all messages (email, text messages, VoIP calls) in a campaign after the first simulated phishing email, text message, or call may be used to direct the user to open the first simulated phishing email or text message, or to open the latest simulated phishing email or text message. In some implementations, simulated phishing emails, text messages, or phone calls of a campaign may be intended to lure the user to perform a different requested action, such as selecting a hyperlink in an email or text message, or returning a voice call.
-
公开(公告)号:US12047383B2
公开(公告)日:2024-07-23
申请号:US17826566
申请日:2022-05-27
Applicant: KnowBe4, Inc.
Inventor: Greg Kras , Alin Irimie
CPC classification number: H04L63/104 , G06F9/30029 , G06F21/562 , G06F21/577 , G09B19/0053 , H04L63/102 , H04L63/1433 , H04L63/1483 , G06F2221/034
Abstract: This disclosure describes embodiments of an improvement to the static group solution because all the administrator needs to do is specify the criteria they care about. Unlike static groups, where the administrator needs to keep track of the status of individual users and move them between static groups as their status changes, smart groups allows for automatic identification of the relevant users at the moment that action needs to be taken. This feature automates user management for the purposes of enrollment in either phishing and training campaigns. Because the smart group membership is determined as the group is about to be used for something, the smart group membership is always accurate and never outdated. The query that determines the smart group membership gets run at the time when you are about to do a campaign or perform some other action that needs to know the membership of the smart group.
-
公开(公告)号:US20230388343A1
公开(公告)日:2023-11-30
申请号:US18142858
申请日:2023-05-03
Applicant: KnowBe4, Inc.
Inventor: Alin Irimie , Stu Sjouwerman , Greg Kras , Eric Sites
CPC classification number: H04L63/1483 , H04L63/1433 , G06N3/044 , G06N3/08 , H04L63/1425
Abstract: Systems and methods of embodiments are described of a campaign controller that establishes a model for using a plurality of types of exploits based on at least results of simulated phishing communications using those exploits, and uses the model to communicate a first simulated phishing communication to one or more devices of a user where the type of exploit used for the first simulated phishing communication is selected using the model. The campaign controller applies either artificial intelligence or machine learning to the results of simulated phishing communications to establish the model. The campaign controller selects the exploit by applying either artificial intelligence or machine learning to one or more attributes of the user and/or one or more responses from the user.
-
公开(公告)号:US11777977B2
公开(公告)日:2023-10-03
申请号:US17107309
申请日:2020-11-30
Applicant: KnowBe4, Inc.
Inventor: Alin Irimie , Wendy Bartlett , David Austin
IPC: H04L9/40
CPC classification number: H04L63/1433 , H04L63/1483 , H04L63/20
Abstract: A method for establishing a campaign for a simulated phishing attack includes receiving, via a campaign manager, specification of a plurality of parameters for a campaign including at least an identifier of a campaign and identification of users to which to send the campaign, establishing, via the campaign manager, a type of exploit for the campaign and one or more types of data to collect via the type of exploit, storing, by the campaign manager, the campaign comprising the plurality of parameters, and identifying, by a simulation server, the campaign stored in the database to create a simulated phishing email, to be sent to email accounts of the users, using the plurality of parameters of the campaign, wherein the simulated phishing email is to be created to have a link to a landing page comprising the type of exploit and configured to collect the one or more types of data.
-
公开(公告)号:US11632387B2
公开(公告)日:2023-04-18
申请号:US17004950
申请日:2020-08-27
Applicant: KnowBe4, Inc.
Inventor: Alin Irimie , Stu Sjouwerman , Greg Kras , Eric Sites
IPC: H04L9/40 , G06N5/02 , G06N20/00 , G06F16/951 , G06F30/20 , H04W12/122 , H04L51/212 , H04W12/128 , H04L51/23
Abstract: The present disclosure describes systems and methods for using a template for a simulated phishing campaign, A database includes a plurality of templates for simulated phishing campaigns, each template of the plurality of templates identifying a list of a plurality of types of simulated phishing communications and at least a portion of content for the simulated phishing communications. A campaign controller selects a template from the plurality of templates for a simulated phishing campaign directed to a user of a plurality of users; and communicates, to one or more devices of the user a first type of simulated phishing communication of the plurality of types of simulated phishing communications with at least the portion of content identified by the template.
-
7.
公开(公告)号:US11601470B2
公开(公告)日:2023-03-07
申请号:US17379086
申请日:2021-07-19
Applicant: KnowBe4, Inc.
Inventor: Alin Irimie , Greg Kras , David Austin , Benjamin Dalton
IPC: H04L9/40 , G06F40/186 , H04L51/18 , H04L51/52
Abstract: Systems and methods are provided for performing simulated phishing attacks using social engineering indicators. One or more failure indicators can be configured in a phishing email template, and each failure indicator can be assigned a description about that failure indicator through use of a markup tag. The phishing email template containing the markup tags corresponding to the failure indicators can be stored and can be used to generate a simulated phishing email in which the one or more markup tags are removed.
-
公开(公告)号:US11503050B2
公开(公告)日:2022-11-15
申请号:US17704871
申请日:2022-03-25
Applicant: KnowBe4, Inc.
Inventor: Eric Sites , Greg Kras , Alin Irimie , Stu Sjouwerman , Marcio Castilho , Siegfried Martens , Eric Bonabeau , Kristian Kime
Abstract: Embodiments disclosed herein describe a server, for example a security awareness server or an artificial intelligence machine learning system that establishes a risk score or vulnerable for a user of a security awareness system, or for a group of users of a security awareness system. The server may create a frequency score for a user, which predicts the frequency at which the user is to be hit with a malicious attack. The frequency score may be based on at least a job score, which may be represented by a value that is based on the type of job the user has, and a breach score that may be represented by a value that is based on the user's level of exposure to email.
-
公开(公告)号:US20220217165A1
公开(公告)日:2022-07-07
申请号:US17704871
申请日:2022-03-25
Applicant: KnowBe4, Inc.
Inventor: Eric Sites , Greg Kras , Alin Irimie , Stu Sjouwerman , Marcio Castilho , Siegfried Martens , Eric Bonabeau , Kristian Kime
IPC: H04L9/40
Abstract: Embodiments disclosed herein describe a server, for example a security awareness server or an artificial intelligence machine learning system that establishes a risk score or vulnerable for a user of a security awareness system, or for a group of users of a security awareness system. The server may create a frequency score for a user, which predicts the frequency at which the user is to be hit with a malicious attack. The frequency score may be based on at least a job score, which may be represented by a value that is based on the type of job the user has, and a breach score that may be represented by a value that is based on the user's level of exposure to email.
-
公开(公告)号:US20220109691A1
公开(公告)日:2022-04-07
申请号:US17553979
申请日:2021-12-17
Applicant: KnowBe4, Inc.
Inventor: Alin Irimie , Stu Sjouwerman , Greg Kras , Eric Sites
Abstract: The present disclosure describes systems and methods for dynamically creating groups of users based on attributes for simulated phishing campaign. A campaign controller determines one or more attributes of a plurality of users during execution of a simulated phishing campaign and creates one or more groups of users during based on the identified attributes. The campaign controller selects a template to be used to execute a portion of the simulated phishing campaign for a first group of users and then communicates one or more simulated phishing communications to the first group of users according to the template. The template may identify a list of a plurality of types of simulated phishing communications (email, text or SMS message, phone call or Internet based communication) and at least a portion of the content for the simulated phishing communication.
-
-
-
-
-
-
-
-
-