The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Jun. 08, 2021

Filed:

Jun. 12, 2018
Applicant:

Nec Laboratories America, Inc., Princeton, NJ (US);

Inventors:

Ding Li, West Windsor, NJ (US);

Kangkook Jee, Princeton, NJ (US);

Zhengzhang Chen, Princeton Junction, NJ (US);

LuAn Tang, Pennington, NJ (US);

Zhichun Li, Princeton, NJ (US);

Assignee:
Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G06F 21/55 (2013.01); G06F 9/48 (2006.01); G06F 16/2455 (2019.01); G06F 16/248 (2019.01);
U.S. Cl.
CPC ...
G06F 21/552 (2013.01); G06F 9/4881 (2013.01); G06F 16/248 (2019.01); G06F 16/2455 (2019.01); G06F 2221/034 (2013.01);
Abstract

A method and system are provided for improving threat detection in a computer system by performing an inter-application dependency analysis on events of the computer system. The method includes receiving, by a processor operatively coupled to a memory, a Tracking Description Language (TDL) query including general constraints, a tracking declaration and an output specification, parsing, by the processor, the TDL query using a language parser, executing, by the processor, a tracking analysis based on the parsed TDL query, generating, by the processor, a tracking graph by cleaning a result of the tracking analysis, and outputting, by the processor and via an interface, query results based on the tracking graph.


Find Patent Forward Citations

Loading…