Patent · US Active

System and method for dynamically avoiding double encryption of already encrypted traffic over point-to-point virtual private networks for lateral movement protection from ransomware

US11722519B1 · kind B1 · utility

2Cited by
23References
14Claims
0Family size

Assignee

Inventors

Key dates

Filing dateNov 8, 2022
Grant dateAug 8, 2023
Priority date
Expiry dateNov 8, 2042

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/1491
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A technique to stop lateral movement of ransomware between endpoints in a VLAN is disclosed. A security appliance is set as the default gateway for intra-LAN communication. Message traffic from compromised endpoints is detected. Attributes of ransomware may be detected in the message traffic, as well as attempts to circumvent the security appliance. Compromised devices may be quarantined.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.