Patent · US Active

Systems and methods for detecting and tracking adversary trajectory

US9961099B2 · kind B2 · utility

8Cited by
3References
17Claims
0Family size

Assignee

Inventors

Key dates

Filing dateFeb 7, 2017
Grant dateMay 1, 2018
Priority date
Expiry dateMar 21, 2037

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L2463/146
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

This disclosure is related to using network flow information of a network to determine the trajectory of an attack. In some examples, an adjacency data structure is generated for a network. The adjacency data structure can include a machine of the network that has interacted with another machine of the network. The network can further include one or more deception mechanisms. The deception mechanisms can indicate that an attack is occurring when a machine interacts with one of the deception mechanisms. When the attack is occurring, attack trajectory information can be generated by locating in the adjacency data structure the machine that interacted with the deception mechanism. The attack trajectory information can correlate the information from the interaction with the deception mechanism, the interaction information of the network, and machine information for each machine to determine a possible trajectory of an adversary.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.