您的位置: 首页 > 农业专利 > 详情页

SYSTEM AND METHODS THEREOF FOR DETECTION OF PERSISTENT THREATS IN A COMPUTERIZED ENVIRONMENT BACKGROUND
专利权人:
CYBER SECDO LTD.
发明人:
BARAK Gil
申请号:
US201715404545
公开号:
US2017206358(A1)
申请日:
2017.01.12
申请国别(地区):
美国
年份:
2017
代理人:
摘要:
A system is used for detection of advanced persistent and non-persistent threats in a computerized environment. The system is connected to a plurality of user devices coupled to an enterprise's network. The system receives via an interface an electronic notification of at least one event in the operating system of the computer. The system then analyzes the at least one event. The system then generates a causality chain for the at least one event respective of the analysis. The causality chain comprises all the threads that attributed to the at least one event in a chronological order. The system then identifies a main thread that started the causality chain that led to the at least one event. Then, the system determines whether the main thread is associated with malicious software. Upon determination that the main thread is associated with malicious software, the causality chain is marked as infected.
来源网站:
中国工程科技知识中心
来源网址:
http://www.ckcest.cn/home/

意 见 箱

匿名:登录

个人用户登录

找回密码

第三方账号登录

忘记密码

个人用户注册

必须为有效邮箱
6~16位数字与字母组合
6~16位数字与字母组合
请输入正确的手机号码

信息补充