首页> 外国专利> Advanced persistent threat (APT) detection center

Advanced persistent threat (APT) detection center

机译:高级持续威胁(APT)检测中心

摘要

A computerized method is described in which one or more received objects are analyzed by an advanced persistent threat (APT) detection center to determine if the objects are APTs. The analysis may include the extraction of features describing and characterizing features of the received objects. The extracted features may be compared with features of known APT malware objects and known non-APT malware objects to determine a classification or probability of the received objects being APT malware. Upon determination that the received objects are APT malware, warning messages may be transmitted to a user of associated client devices. Classified objects may also be used to generate analytic data for the prediction and prevention of future APT attacks.
机译:描述了一种计算机化的方法,其中由高级持续威胁(APT)检测中心分析一个或多个接收到的对象,以确定这些对象是否为APT。分析可以包括描述和表征所接收对象的特征的特征的提取。所提取的特征可以与已知的APT恶意软件对象和已知的非APT恶意软件对象的特征进行比较,以确定接收到的对象是APT恶意软件的分类或概率。一旦确定接收到的对象是APT恶意软件,就可以将警告消息发送到关联的客户端设备的用户。分类对象也可以用于生成分析数据,以预测和预防将来的APT攻击。

著录项

  • 公开/公告号US9628507B2

    专利类型

  • 公开/公告日2017-04-18

    原文格式PDF

  • 申请/专利权人 FIREEYE INC.;

    申请/专利号US201314042483

  • 申请日2013-09-30

  • 分类号G06F21/56;H04L29/06;G06F21/55;

  • 国家 US

  • 入库时间 2022-08-21 13:45:02

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号