首页> 外国专利> SYSTEMS AND METHOD FOR IDENTIFYING AND MITIGATING INFORMATION SECURITY RISKS

SYSTEMS AND METHOD FOR IDENTIFYING AND MITIGATING INFORMATION SECURITY RISKS

机译:识别和缓解信息安全风险的系统和方法

摘要

Methods and systems for Sustained Testing and Awareness Refresh against Phishing threats (STAR*Phish™) are disclosed. In an embodiment, a method assigns schemes and unique identifiers to target e-mail addresses associated with a user accounts. The method delivers e-mail messages to the targeted e-mail addresses, the e-mail messages comprising an HTTP request and a unique identifier associated with each of the user accounts. The method then receives, at a Phishing Metric Tool (PMT), a response including the unique identifier. The PMT logs training requirements for the user accounts, tracks response metrics for the training requirements, and redirects the respective HTTP requests to a phishing training tool (PTT). The PTT sends a notification of the user account identities and the unique identifiers to the PMT and returns a status for the training requirements for the user accounts. Upon completion of the training, the PMT sends completion notifications for the user accounts.
机译:公开了针对网络钓鱼威胁的持续测试和意识刷新(STAR * Phish TM)的方法和系统。在一个实施例中,一种方法将方案和唯一标识符分配给与用户帐户相关联的目标电子邮件地址。该方法将电子邮件消息传递到目标电子邮件地址,该电子邮件消息包括HTTP请求和与每个用户帐户关联的唯一标识符。然后,该方法在网络钓鱼度量工具(PMT)处接收包括唯一标识符的响应。 PMT记录用户帐户的培训要求,跟踪培训要求的响应指标,并将相应的HTTP请求重定向到网络钓鱼培训工具(PTT)。 PTT将用户帐户标识和唯一标识符的通知发送给PMT,并返回用户帐户培训要求的状态。培训完成后,PMT将发送用户帐户的完成通知。

著录项

  • 公开/公告号US2014337995A1

    专利类型

  • 公开/公告日2014-11-13

    原文格式PDF

  • 申请/专利权人 BOOZ ALLEN & HAMILTON;

    申请/专利号US201414444673

  • 发明设计人 SEMION BEZRUKOV;SEAN PALKA;ART FRITZSON;

    申请日2014-07-28

  • 分类号H04L29/06;H04L12/58;

  • 国家 US

  • 入库时间 2022-08-21 15:24:48

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号