The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Dec. 22, 2020

Filed:

May. 17, 2019
Applicant:

Sga Solutions Co., Ltd., Seoul, KR;

Inventors:

Sung Jin Kim, Gyeonggi-do, KR;

Seung Jae Kim, Gyeonggi-do, KR;

Su Yeon Yoo, Daejeon, KR;

Sung Kyu Kim, Seoul, KR;

Soo Hwan Kim, Seoul, KR;

Assignee:
Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G06K 9/62 (2006.01); G06T 3/40 (2006.01); G06N 3/08 (2006.01); G06T 7/90 (2017.01);
U.S. Cl.
CPC ...
G06K 9/6256 (2013.01); G06K 9/6267 (2013.01); G06N 3/08 (2013.01); G06T 3/40 (2013.01); G06T 7/90 (2017.01); G06T 2207/10024 (2013.01);
Abstract

The present invention relates to an exploit kit detection system based on a neural network using an image and provides a configuration including: a file collection module for collecting a web file created in a web document code and a script code; a distribution module for distributing and storing the collected web file; a management module for assigning, when the web file is received, a job ID to the web file and registering the web file in an inspection target list; an image conversion module for converting a corresponding web file into grayscale, targeting the web file registered in the inspection target list; a classification model, as a classification model based on the neural network, for receiving an image of grayscale and classifying existence and a type of the exploit kit (EK); and a result processing module for receiving a classification result, creating a result data, and transmitting the result data to the distribution module. According to the system as described above, as maliciousness of an image is determined by analyzing the image, an environment of detecting an exploit kit through only one conversion process is provided, and thus a fast performance can be demonstrated, and the system may be used for easy filtering of a malicious file from large-scale web page files.


Find Patent Forward Citations

Loading…