发明名称 Detecting risky domains
摘要 There is disclosed a technique for detecting risky domains. The technique comprises collecting information in connection with a domain. The technique also comprises generating a profile comprising at least one metric associated with the domain based on the collected information. The technique further comprises determining the riskiness in connection with the domain based on the generated profile.
申请公布号 US9462009(B1) 申请公布日期 2016.10.04
申请号 US201414501485 申请日期 2014.09.30
申请人 EMC Corporation 发明人 Kolman Eyal;Vaystikh Alex;Kaufman Alon;Eran Ereli;Gruss Eyal
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人 Gupta Krishnendu;Reyes Jason A.
主权项 1. A computer-implemented method, comprising: collecting information in connection with a domain, wherein the information relates to access to a web site by at least one communication; based on the collected information, generating a profile comprising at least one metric associated with the domain, wherein the profile comprises a domain profile relating to the website that includes count and/or frequency data aggregated over at least one time period; and based on the generated profile, determining a riskiness in connection with the domain; wherein determining the riskiness in connection with the domain, comprises: performing an anomaly detection operation to gauge difference between the generated profile and normal domain behaviour;performing a pattern matching operation to gauge difference between the generated profile and abnormal domain behaviour;the riskiness being based at least in part on (i) the gauged difference between the generated profile and the normal domain behaviour and (ii) the gauged difference between the generated profile and the abnormal domain behaviour.
地址 Hopkinton MA US
您可能感兴趣的专利