Patent · US Active

Just-in-time filesystem-based ransomware backup

US12373299B2 · kind B2 · utility

0Cited by
2References
18Claims
0Family size

Assignee

Inventors

Key dates

Filing dateJan 25, 2023
Grant dateJul 29, 2025
Priority date
Expiry dateJan 25, 2043

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/145
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

One example method includes detecting a file access process, such as a write operation performed by a ransomware process, directed to a file, based on the detecting, incrementing a counter, checking to determine if the counter exceeds a defined threshold, and when the counter exceeds the defined threshold, creating a backup of the file. The backup file may be a read-only file, and may expire, and be deleted, at a particular time, or after the passage of a period of time.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.