The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Aug. 26, 2025

Filed:

Feb. 21, 2023
Applicant:

Microsoft Technology Licensing, Llc, Redmond, WA (US);

Inventors:

Jeremy Daniel Croy, Redmond, WA (US);

Randal Patrick Treit, Snohomish, WA (US);

Christopher Timothy Kirk, Redmond, WA (US);

Assignee:
Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 9/40 (2022.01);
U.S. Cl.
CPC ...
H04L 63/145 (2013.01); H04L 63/1416 (2013.01);
Abstract

Detecting sideloaded attack chains. The method includes obtaining first telemetry data for a particular instance of a shared library. The first telemetry data is obtained from a first remote client system as a result of the first remote client system identifying the shared library as a known target of sideloaded attack chains. The first telemetry data for the particular instance of the shared library is compared to other telemetry data for other instances of the shared library obtained from other remote client systems to determine a similarity score for the first telemetry data as compared to the other telemetry data. Based on the similarity score, sideloaded attack chain conclusion information about the particular instance of the shared library is sent to the first remote client system.


Find Patent Forward Citations

Loading…