The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Apr. 29, 2025

Filed:

Mar. 30, 2023
Applicant:

Acronis International Gmbh, Schaffhausen, CH;

Inventors:

Vladimir Strogov, Singapore, SG;

Sergey Ulasen, Singapore, SG;

Aliaksei Dodz, Singapore, SG;

Serg Bell, Singapore, SG;

Stanislav Protasov, Singapore, SG;

Assignee:

Acronis International GmbH, Schaffhausen, CH;

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G06F 21/52 (2012.12); G06F 21/55 (2012.12); G06F 21/56 (2012.12);
U.S. Cl.
CPC ...
G06F 21/52 (2012.12); G06F 21/566 (2012.12); G06F 2221/033 (2012.12);
Abstract

Systems and methods for threat detection and analysis. A method includes monitoring at least one thread associated with at least one user process on a computing device. The method further includes detecting specific-system calls associated with at least one user process at user level. The specific-system calls are analyzed by applying a filter to system calls sequence feature sets associated with the specific-system calls for detecting one or more events of interest. A capture of a full stack trace of at least one user process is requested if the system calls sequence feature set is filtered and at least one event of interest is detected. A first level monitoring is provided to the computing device, which includes processing and analyzing the captured full stack trace by a machine learning (ML) stack trace analyzer to generate a first verdict for threat detection and analysis.


Find Patent Forward Citations

Loading…