System and method for analyzing unauthorized intrusion into a computer network
US9866584B2 · kind B2 · utility
Assignee
Inventor
Key dates
| Filing date | Nov 14, 2014 |
| Grant date | Jan 9, 2018 |
| Priority date | — |
| Expiry date | Nov 14, 2034 |
Classification
- Technology area (CPC G)Physics
- CPC primaryG06F2221/2123
- WIPO fieldDigital communication
- WIPO sectorElectrical engineering
Abstract
The method analyzes unauthorized intrusion into a computer network. Access is allowed to a virtualized operating system running on a hypervisor operating system hosted on a network device. A network attack is intercepted on the virtualized operating system using an introspection module with a virtual-machine-based rootkit module and its associated userland processes running on the hypervisor operating system. The network attack includes attack-identifying information. Forensic data is generated on the network attack from the attack-identifying information.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.