The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Nov. 19, 2024

Filed:

Dec. 12, 2023
Applicant:

International Business Machines Corporation, Armonk, NY (US);

Inventors:

Yu-Siang Chen, Minxiong Township, TW;

Ci-Hao Wu, Taipei, TW;

Ying-Chen Yu, Taipei, TW;

Pao-Chuan Liao, Taipei, TW;

June-Ray Lin, Taipei, TW;

Assignee:
Attorneys:
Primary Examiner:
Int. Cl.
CPC ...
G06F 21/00 (2013.01); G06F 21/56 (2013.01); G06N 5/02 (2023.01); G06N 5/04 (2023.01);
U.S. Cl.
CPC ...
G06F 21/561 (2013.01); G06F 21/568 (2013.01); G06N 5/02 (2013.01); G06N 5/04 (2013.01);
Abstract

A malware family identification engine constructs a graph data structure of direct relationships between malware instances and malware families, direct relationships between malware instances and detected tags, and indirect relationships between detected tags and malware families. The engine builds a dictionary data structure comprising detected tag entries linking each detected tag to one or more malware family nodes based on the graph data structure. The engine identifies significant indirect entities (SIEs) within the detected tag entries of the dictionary data structure and selects a SIE with a highest number of out-going links (OGLs) as a root node in a family tree data structure, recursively connects SIEs with a number of OGLs less than the highest number of OGLs to the root node in the family tree data structure, and converts each SIE name in the family tree data structure to a chained family entity name in the family tree data structure.


Find Patent Forward Citations

Loading…