The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Jun. 11, 2024

Filed:

Apr. 19, 2022
Applicant:

Sophos Limited, Abingdon, GB;

Inventor:

Karl Ackerman, Burlington, MA (US);

Assignee:

Sophos Limited, Abingdon, GB;

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 9/40 (2022.01); H04L 41/149 (2022.01); H04L 43/028 (2022.01); H04L 61/2514 (2022.01);
U.S. Cl.
CPC ...
H04L 63/1425 (2013.01); H04L 41/149 (2022.05); H04L 43/028 (2013.01); H04L 61/2514 (2013.01); H04L 63/1433 (2013.01);
Abstract

Various aspects related to threat management are disclosed. An example method includes monitoring network traffic on a computer network that includes a plurality of endpoints, identifying a software application executing on at least one endpoint from one or more of the sent data or the received data, where execution of the software application is associated with a startup time window and a post-startup time window, determining a security status score for the at least one endpoint based on a comparison of the sent data and the received data with a known pattern of network activity associated with the software application, wherein the known pattern of network activity is based upon the startup time window of the software application, determining a threat status for the at least one endpoint based on the security status score, and, generating an indication of the threat status for the at least one endpoint.


Find Patent Forward Citations

Loading…