发明名称 MULTI-FACTOR DECEPTION MANAGEMENT AND DETECTION FOR MALICIOUS ACTIONS IN A COMPUTER NETWORK
摘要 A network surveillance system, including a management server within a network of resources in which users access the resources in the network based on credentials, including a deployment module planting honeytokens in resources in the network, wherein a honeytoken is an object in memory or storage of a first resource that may be used by an attacker to access a second resource using decoy credentials, and wherein the deployment module plants a first honeytoken in a first resource, R1, used to access a second resource, R1, using first decoy credentials, and plants a second honeytoken in R2, used to access a third resource, R3, using second decoy credentials, and an alert module alerting that an attacker is intruding the network only in response to both an attempt to access R2 using the first decoy credentials, and a subsequent attempt to access R3 using the second decoy credentials.
申请公布号 WO2016199128(A1) 申请公布日期 2016.12.15
申请号 WO2016IL50582 申请日期 2016.06.06
申请人 ILLUSIVE NETWORKS LTD. 发明人 TOUBOUL, Shlomo;LEVIN, Hanan;ROUBACH, Stephane;MISCHARI, Assaf;BEN DAVID, Itai;AVRAHAM, Itay;OZER, Adi;KAZAZ, Chen;ISRAELI, Ofer;VINGURT, Olga;GAREH, Liad;GRIMBERG, Israel;COHEN, Cobby;SULTAN, Sharon;KUBOVSKY, Matan
分类号 G06F11/00;G06F12/14 主分类号 G06F11/00
代理机构 代理人
主权项
地址