The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Jul. 04, 2023

Filed:

Apr. 02, 2020
Applicant:

Deutsche Telekom Ag, Bonn, DE;

Inventors:

Dvir Cohen, Efrat, IL;

Asaf Shabtai, Hulda, IL;

Yuval Elovici, Arugot, IL;

Yisroel Avraham Mirsky, Beer Sheva, IL;

Rami Puzis, Ashdod, IL;

Tobias Martin, Darmstadt, DE;

Manuel Kamp, Darmstadt, DE;

Assignee:
Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G06F 11/30 (2006.01); H04L 9/40 (2022.01); G06N 3/04 (2023.01); G06F 18/23 (2023.01);
U.S. Cl.
CPC ...
H04L 63/1433 (2013.01); G06F 11/3072 (2013.01); G06F 18/23 (2023.01); G06N 3/04 (2013.01); H04L 63/1416 (2013.01); H04L 63/1425 (2013.01);
Abstract

A system for analyzing and clustering darknet traffic streams with word embeddings, comprising a data processing module which collects packets that are sent to non-existing IP addresses that belong to darknet's taps (blackholes) that are deployed over the internet: a port embedding module for performing port sequence embeddings by using a word embedding algorithm on the port sequences extracted from the data processing module while transforming the port sequences into a meaningful numerical feature vectors: a clustering module for performing temporal clustering of the feature vectors over time; and an alert logic and visualization module visualizes the data and provides alerts regarding a cluster that an analyst classified as malicious in the past.


Find Patent Forward Citations

Loading…