Patent · US Active

Network-based malware detection

US9661009B1 · kind B1 · utility

208Cited by
222References
27Claims
0Family size

Assignee

Inventors

Key dates

Filing dateJul 18, 2016
Grant dateMay 23, 2017
Priority date
Expiry dateJul 18, 2036

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06F2009/45595
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

In an embodiment, a system, device and method for detecting a malicious attack is described. Herein, the system includes a security network device that conducts an analysis on received network traffic to detect a suspicious object associated with the network traffic and determine an identifier associated with a source of the suspicious object. Both information associated with the suspicious object and ancillary data, including information that identifies a return path for analysis results to a customer, are uploaded to a detection cloud. The detection cloud includes provisioning logic and one or more virtual machines that are provisioned by the provisioning logic in accordance with at least a portion of the ancillary data. The provisioning logic to customize functionality of the detection cloud for a specific customer.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.