The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Apr. 09, 2024

Filed:

Jun. 30, 2021
Applicant:

Rapid7, Inc., Boston, MA (US);

Inventors:

Viliam Holub, Prague, CZ;

Trevor Parsons, Boston, MA (US);

Eoin Shanley, Dublin, IE;

Assignee:

Rapid7, Inc., Boston, MA (US);

Attorney:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
H04L 29/06 (2006.01); G06F 18/214 (2023.01); G06N 20/00 (2019.01); H04L 9/40 (2022.01); H04L 41/22 (2022.01);
U.S. Cl.
CPC ...
H04L 63/1416 (2013.01); G06F 18/214 (2023.01); G06N 20/00 (2019.01); H04L 41/22 (2013.01); H04L 63/1425 (2013.01); H04L 63/1466 (2013.01);
Abstract

Embodiments of a cyberattack monitoring system are disclosed to identify successful attacks on a service based on benign activities of the attacker performed after the initial attack attempt. In embodiments, the system identifies the initial attack by matching client actions to known attack patterns. Clients observed with attempted attacks are remembered as suspected attackers. The system will then monitor subsequent actions of suspected attackers for signs that the initial attack attempt was successful. In embodiments, a successful attack is recognized when the system observes one or more subsequent benign actions by the suspected attacker. In embodiments, the presence of follow-on benign actions is used as a filter to filter out unsuccessful attacks and false positives detected by the system. The filtering enables the system to better focus system resources and human attention on a small set of client activities that are likely successful attacks.


Find Patent Forward Citations

Loading…