首页> 外国专利> Malware detection verification and enhancement by coordinating endpoint and malware detection systems

Malware detection verification and enhancement by coordinating endpoint and malware detection systems

机译:通过协调端点和恶意软件检测系统进行恶意软件检测验证和增强

摘要

Computerized techniques to determine and verify maliciousness of an object by a security logic engine are described. A method features receiving information pertaining to a first set of events associated with a first object (first information) from an endpoint and information pertaining to a second set of events associated with a second object (second information) from an analysis system. Thereafter, the likelihood of the cyber-attack being conducted on the network is determined by at least correlating the first information and the second information with at least events associated with known malicious objects. Any endpoint vulnerable to the cyber-attack are identified based on a configuration of each of the plurality of endpoints and requesting the analysis system to conduct one or more further analyses in accordance with at least a software profile identified in a configuration of the first endpoint of the plurality of endpoints identified as vulnerable.
机译:描述了通过安全逻辑引擎确定和验证对象恶意性的计算机化技术。 一种方法,其特征在于从与来自分析系统相关联的与第二对象(第二信息)相关联的端点和与第二组事件相关联的第一组事件的信息接收与第一对象(第一信息)相关联的第一组事件的信息。 此后,通过至少将第一信息和第二信息与与已知的恶意对象相关联的至少事件至少相关联来确定在网络上进行网络攻击的可能性。 基于多个端点中的每一个的配置来识别容易受网络攻击的任何端点,并请求分析系统根据在第一个端点的配置中识别的至少一个软件简档进行一个或多个进一步的分析 识别为易受伤害的多个端点。

著录项

  • 公开/公告号US11240262B1

    专利类型

  • 公开/公告日2022-02-01

    原文格式PDF

  • 申请/专利权人 FIREEYE INC.;

    申请/专利号US201916666335

  • 发明设计人 ASHAR AZIZ;OSMAN ABDOUL ISMAEL;

    申请日2019-10-28

  • 分类号H04L29/06;

  • 国家 US

  • 入库时间 2022-08-24 23:34:40

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号