The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Dec. 17, 2019

Filed:

Sep. 05, 2017
Applicant:

Attivo Networks Inc., Fremont, CA (US);

Inventors:

Anil Gupta, Bangalore, IN;

Harinath Vishwanath Ramchetty, Bangalore, IN;

Venu Vissamsetty, San Jose, CA (US);

Assignee:

ATTIVO NETWORKS INC., Fremont, CA (US);

Attorneys:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
G06F 21/56 (2013.01); G06F 21/55 (2013.01); G06F 16/14 (2019.01); G06F 16/16 (2019.01); G06F 16/17 (2019.01);
U.S. Cl.
CPC ...
G06F 21/565 (2013.01); G06F 16/148 (2019.01); G06F 16/162 (2019.01); G06F 16/1734 (2019.01); G06F 21/554 (2013.01); G06F 21/56 (2013.01);
Abstract

Endpoints in a network environment include remote file systems mounted thereto that reference a file system generator that responds to file system commands with deception data. Requests to list the contents of a directory are intercepted, such as while a response is passed up through an IO stack. The response is modified to include references to deception files and directories that do not actually exist on the system hosting the file system generator. The number of the deception files and directories may be randomly selected. Requests to read deception files are answered by generating a file having a file type corresponding to the deception file. Deception files may be written back to the system by an attacker and then deleted.


Find Patent Forward Citations

Loading…