The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Jul. 13, 2021

Filed:

Jun. 25, 2019
Applicant:

Trend Micro Incorporated, Tokyo, JP;

Inventors:

Shoufu Luo, Austin, TX (US);

Jonathan Edward Andersson, Round Rock, TX (US);

Josiah Dede Hagen, Round Rock, TX (US);

Assignee:
Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 29/06 (2006.01); G06F 16/901 (2019.01);
U.S. Cl.
CPC ...
H04L 63/1425 (2013.01); G06F 16/9024 (2019.01); H04L 63/0209 (2013.01); H04L 63/10 (2013.01); H04L 63/145 (2013.01); H04L 63/20 (2013.01); H04L 2463/121 (2013.01);
Abstract

In one embodiment, a network security device monitors network communications between a computer and another computer. A periodicity of transmissions made by one computer to the other computer is determined, with the periodicity being used to identify candidate time point pairs having intervals that match the periodicity. A graph is constructed with time points of the candidate time point pairs as nodes and with intervals of time point pairs as edges. A longest path that continuously links one time point to another time point on the graph is compared to a threshold length to verify that the transmissions are periodic, and are thus potentially indicative of malicious network communications.


Find Patent Forward Citations

Loading…