首页> 外国专利> Automated detection and remediation of ransomware attacks involving a storage device of a computer network

Automated detection and remediation of ransomware attacks involving a storage device of a computer network

机译:自动检测和补救涉及计算机网络存储设备的勒索软件攻击

摘要

An apparatus in one embodiment comprises a storage device having a processor coupled to a memory. The storage device incorporates at least one trap object particularly configured for use in detection of a ransomware attack and not otherwise utilized for storage of operational data in the storage device. The storage device further comprises a ransomware detector configured to monitor the trap object and to generate an alert based at least in part on a result of the monitoring. The trap object may comprise a dummy file system element of the storage device, such as, for example, a file or a directory of a file system of the storage device. Additionally or alternatively, the trap object may comprise one or more specific storage blocks of the storage device with the one or more specific storage blocks being determined at least in part by the file system of the storage device.
机译:在一个实施例中的一种设备包括具有耦合到存储器的处理器的存储设备。该存储设备包含至少一个陷阱对象,该对象专门配置用于检测勒索软件攻击,而没有用于在存储设备中存储操作数据。该存储设备还包括勒索软件检测器,该勒索软件检测器配置为监视陷阱对象并至少部分地基于监视结果来生成警报。陷阱对象可以包括存储设备的伪文件系统元素,例如存储设备的文件或文件系统的目录。附加地或替代地,陷阱对象可以包括存储设备的一个或多个特定存储块,其中一个或多个特定存储块至少部分地由存储设备的文件系统确定。

著录项

  • 公开/公告号US10609066B1

    专利类型

  • 公开/公告日2020-03-31

    原文格式PDF

  • 申请/专利权人 EMC IP HOLDING COMPANY LLC;

    申请/专利号US201615360398

  • 发明设计人 MISHA NOSSIK;YURI BERFIELD;LEJIN DU;

    申请日2016-11-23

  • 分类号H04L29/06;G06F21/57;

  • 国家 US

  • 入库时间 2022-08-21 11:27:42

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号