Patent · US Active

Method for tracking machines on a network using multivariable fingerprinting of passively available information

US8176178B2 · kind B2 · utility

61Cited by
6References
32Claims
0Family size

Assignee

Inventors

Key dates

Filing dateJan 29, 2008
Grant dateMay 8, 2012
Priority date
Expiry dateOct 5, 2030

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L2463/144
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A method for tracking machines on a network of computers. The method includes determining one or more assertions to be monitored by a first web site which is coupled to a network of computers. The method monitors traffic flowing to the web site through the network of computers and identifies the one or more assertions from the traffic coupled to the network of computers to determine a malicious host coupled to the network of computers. The method includes associating a first IP address and first hardware finger print to the assertions of the malicious host and storing information associated with the malicious host in one or more memories of a database. The method also includes identifying an unknown host from a second web site, determining a second IP address and second hardware finger print with the unknown host, and determining if the unknown host is the malicious host.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.