The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Feb. 08, 2022

Filed:

Apr. 02, 2020
Applicant:

Anomali Inc., Redwood City, CA (US);

Inventors:

Wei Huang, Los Altos Hills, CA (US);

Yizheng Zhou, San Mateo, CA (US);

Peizhou Guo, Cupertino, CA (US);

Mohsen Imani, Redwood City, CA (US);

Assignee:

Anomali Inc., Redwood City, CA (US);

Attorney:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
G06F 15/173 (2006.01); H04L 29/06 (2006.01); H04L 29/08 (2006.01); H04L 12/26 (2006.01); G06F 16/22 (2019.01);
U.S. Cl.
CPC ...
H04L 63/1416 (2013.01); G06F 16/2228 (2019.01); H04L 43/08 (2013.01); H04L 43/16 (2013.01); H04L 63/1425 (2013.01); H04L 67/141 (2013.01);
Abstract

A system and a method are disclosed for describing a mechanism for tracking malicious activity detected on a network. For example, based on network data collected from a server, the disclosed system may detect malicious activity originating from a client device directed to the server. To detect the malicious activity, network data may be captured by the server and analyzed. When malicious activity is detected, the system may track the malicious activity, using the network data, to an earliest connection date of a client device from where the malicious activity potentially originated. The earliest connection date may indicate a potential start date of the malicious activity.


Find Patent Forward Citations

Loading…