Detecting botnets
US8661544B2 · kind B2 · utility
137Cited by
10References
24Claims
0Family size
Assignee
Inventors
Key dates
| Filing date | Aug 31, 2010 |
| Grant date | Feb 25, 2014 |
| Priority date | — |
| Expiry date | Apr 28, 2031 |
Classification
- Technology area (CPC H)Electricity
- CPC primaryH04L2463/144
- WIPO fieldDigital communication
- WIPO sectorElectrical engineering
Abstract
A method is disclosed for distributed detection of botnets via a plurality of sensors on a network. According to embodiments, DNS information, including domain names and addresses, is received at a sensor, the number of unique subnets corresponding to a domain name is determined and an alert is sent to other sensors when the number of unique subnets exceeds a first threshold. Other embodiments are also disclosed.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.