The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Apr. 18, 2023

Filed:

Jul. 15, 2021
Applicant:

Cisco Technology, Inc., San Jose, CA (US);

Inventors:

David McGrew, Poolesville, MD (US);

Martin Rehak, Prague, CZ;

Blake Harrell Anderson, San Jose, CA (US);

Sunil Amin, Atlanta, GA (US);

Assignee:

Cisco Technology, Inc., San Jose, CA (US);

Attorneys:
Primary Examiner:
Int. Cl.
CPC ...
H04L 41/28 (2022.01); H04L 9/40 (2022.01); H04W 12/12 (2021.01); G06F 21/55 (2013.01); H04L 67/143 (2022.01);
U.S. Cl.
CPC ...
H04L 41/28 (2013.01); G06F 21/55 (2013.01); H04L 63/14 (2013.01); H04L 63/1425 (2013.01); H04L 63/1441 (2013.01); H04W 12/12 (2013.01); H04L 63/20 (2013.01); H04L 67/143 (2013.01);
Abstract

In one embodiment, a service receives administration traffic data in a network associated with a remote administration session in which a control device remotely administers a client device. The service analyzes the administration traffic data to determine whether any portion of the administration traffic data is resulting from an administration session involving a trusted administrator. The service flags a first portion of the administration traffic data as authorized when the first portion of the administration traffic data is determined to result from an administration session involving a trusted administrator, and a second portion of the administration traffic data is non-flagged. The service assesses the second portion of the administration traffic data using a machine learning-based traffic classifier to determine whether the second portion of the administration traffic data is malicious.


Find Patent Forward Citations

Loading…