Botnet detection and mitigation
US11902305B2 · kind B2 · utility
Assignee
Inventors
Key dates
| Filing date | Feb 19, 2023 |
| Grant date | Feb 13, 2024 |
| Priority date | — |
| Expiry date | Feb 19, 2043 |
Classification
- Technology area (CPC H)Electricity
- CPC primaryH04L2463/144
- WIPO fieldDigital communication
- WIPO sectorElectrical engineering
Abstract
Method and systems for detecting and mitigating a malicious bot. Threat information is obtained, the threat information identifying one or more indicators of compromise (IOC) corresponding to suspected or known malicious network traffic. A control list (CL) corresponding to the threat information is generated, the CL describing rules for identifying network flows to be logged in a network log. The network log identifying the network flows is obtained and a suspect network flow identified by both the threat information and the network log is identified. An address corresponding to the suspect network flow is identified and the address is correlated with a user identifier. A notification is issued to a user associated with the user identifier, the notification indicating a suspected existence of a malicious bot.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.