The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Apr. 18, 2023

Filed:

Sep. 03, 2021
Applicant:

Bank of America Corporation, Charlotte, NC (US);

Inventors:

Steven E. Sinks, Scottsdale, AZ (US);

Jonathan Sheedy, Poynton, GB;

Assignee:

Bank of America Corporation, Charlotte, NC (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 12/26 (2006.01); H04L 29/08 (2006.01); G06N 5/04 (2023.01); H04L 43/10 (2022.01); H04L 67/06 (2022.01);
U.S. Cl.
CPC ...
H04L 43/10 (2013.01); G06N 5/04 (2013.01); H04L 67/06 (2013.01);
Abstract

A lateral movement identification tool analyzes communications sent and received from a local host to identify potential instances of lateral movement. When the host-based lateral movement identification tool identifies a host to host connection, the tool processes one or more artificial intelligence algorithms to analyze information from local network resources including a directory service, a local network system such as a network basic input/output system, a domain name system, and event logs. The lateral movement identification tool correlates the aggregated information with identified host to host messaging and sends alerts when lateral movement is suspected. Alerts may be either presented locally or provided to a central console based on configuration information.


Find Patent Forward Citations

Loading…