The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
May. 17, 2016

Filed:

May. 05, 2015
Applicant:

Pivotal Software, Inc., Palo Alto, CA (US);

Inventors:

Jin Yu, Melbourne, AU;

Derek Lin, San Mateo, CA (US);

Assignee:

Pivotal Software, Inc., Palo Alto, CA (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G06F 21/00 (2013.01); H04L 29/06 (2006.01); H04L 29/08 (2006.01); G06F 17/30 (2006.01);
U.S. Cl.
CPC ...
H04L 63/1425 (2013.01); G06F 17/30327 (2013.01); H04L 63/1441 (2013.01); H04L 67/10 (2013.01); H04L 67/303 (2013.01);
Abstract

Methods, systems, and apparatus, including computer programs encoded on computer storage media for identifying malware attacks collects data traffic information. A system receives data traffic information indicative of communications between computers within a network and computers external to the network. The system parses the data traffic information to identify communication links between the computers within the network and computers external to the network. The system can generate communication link profiles for each of the computers within the network. The system can then group computers within the network into computer clusters based on similarities between the communication link profiles for each computer. The system can identify computer clusters having anomalous communication patterns as being indicative of a malware attack.


Find Patent Forward Citations

Loading…