The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
May. 30, 2023

Filed:

Feb. 10, 2020
Applicant:

International Business Machines Corporation, Armonk, NY (US);

Inventors:

Cheng-Ta Lee, Taipei, TW;

Bo-Yu Kuo, Kaohsiung, TW;

Gideon Zenz, Kassel, DE;

Andrii Iesiev, Northampton, MA (US);

Jacobus P. Lodewijkx, Oakton, VA (US);

Attorney:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
H04L 29/06 (2006.01); G06F 21/56 (2013.01); G06F 18/23 (2023.01); G06N 3/048 (2023.01);
U.S. Cl.
CPC ...
G06F 21/561 (2013.01); G06F 18/23 (2023.01); G06F 21/566 (2013.01); G06N 3/048 (2023.01);
Abstract

A computer-implemented method, a computer program product, and a computer system for creating malware domain sinkholes by domain clustering. The computer system clusters malware domains into domain clusters. The computer system collects domain metrics in the domain clusters. The computer system sorts clustered malware domains in the respective ones of the domain clusters, based on the domain metrics. The computer system selects, from the clustered malware domains in the respective ones of the domain clusters, a predetermined number of top domains as candidates of respective domain sinkholes, wherein the respective domain sinkholes are created for the respective ones of the domain clusters.


Find Patent Forward Citations

Loading…