Patent · US Active

Detection and prevention for malicious threats

US9419996B2 · kind B2 · utility

41Cited by
9References
23Claims
0Family size

Assignee

Inventors

Key dates

Filing dateMay 1, 2013
Grant dateAug 16, 2016
Priority date
Expiry dateMay 1, 2033

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/1416
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

A method of identifying one or more malicious threats in a computing device. The device comprises monitoring a plurality of events occurring on a computing device in run time, a plurality of processes executed on the computing device in run time, and a plurality of host activities of the computing device in run time, identifying a compliance of at least some of the plurality of events, the plurality of processes, and the plurality of host activities with a plurality of rules, generating a rule compliance status dataset generated according to the compliance, identifying a match between the rule compliance status dataset and at least one of a plurality of reference profiles each indicative of a computing device operation under a malicious threat activity, and detecting a malicious threat according to the match.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.