The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Feb. 22, 2022

Filed:

Jun. 24, 2019
Applicant:

Avast Software S.r.o., Prague, CZ;

Inventor:

Rajarshi Gupta, Los Altos, CA (US);

Assignee:

Avast Software s.r.o., Prague, CZ;

Attorneys:
Primary Examiner:
Int. Cl.
CPC ...
H04L 29/06 (2006.01); G06F 21/55 (2013.01); G06K 9/62 (2022.01);
U.S. Cl.
CPC ...
H04L 63/1425 (2013.01); G06K 9/6267 (2013.01); H04L 63/02 (2013.01); H04L 63/1416 (2013.01); H04L 63/1491 (2013.01); G06F 21/55 (2013.01);
Abstract

A method of identifying malicious activity in a sequence of computer instructions includes monitoring data flows from a public network to one or more networked devices on a private network and to one or more honeypots that appear to the public network to be devices on the private network, representing each such data flow as a word, and the sequence of data flows as comprising an n-gram of two or more words. The data flows are characterized with a likelihood of being malicious based on their statistical association with the one or more honeypots relative to their statistical association with one or more networked devices. Identified malicious activity is used to train a network device to identify malicious data flows and prevent them from reaching devices on the private network.


Find Patent Forward Citations

Loading…