The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Sep. 12, 2023

Filed:

Sep. 27, 2022
Applicant:

Netapp, Inc., San Jose, CA (US);

Inventors:

Jagadish Vasudeva, Shimoga, IN;

Prateeksha Varshney, Ghaziabad, IN;

Priya Sehgal, Pune, IN;

Mrinal K. Bhattacharjee, Bangalore, IN;

Amit Valjibhai Panara, Bangalore, IN;

Siddhartha Nandi, Bangalore, IN;

Assignee:

NETAPP, INC., San Jose, CA (US);

Attorney:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
G06F 21/56 (2013.01); G06F 21/54 (2013.01); G06F 21/60 (2013.01); G06F 21/57 (2013.01);
U.S. Cl.
CPC ...
G06F 21/566 (2013.01); G06F 21/54 (2013.01); G06F 21/568 (2013.01); G06F 21/577 (2013.01); G06F 21/602 (2013.01);
Abstract

A method, computing device, and non-transitory machine-readable medium for detecting malware attacks and mitigating data loss. In various embodiments, an agent is implemented in the operating system of a storage node to provide protection at the bottommost level in a data write path. The agent intercepts write requests and observes file events over time to detect anomalous behavior. For example, the agent may monitor incoming write requests and, when an incoming write request is detected, determine whether the file is associated with a malware attack risk based on an analysis of an encryption state of data in the file.


Find Patent Forward Citations

Loading…