发明名称 Deception-based responses to security attacks
摘要 Deception-based techniques for responding to security attacks are described herein. The techniques include transitioning a security attack to a monitored computing device posing as a computing device impacted by the security attack and enabling the adversary to obtain deceptive information from the monitored computing device. Also, the adversary may obtain a document configured to report identifying information of an entity opening the document, thereby identifying the adversary associated with the attack. Further, the techniques include determining that a domain specified in a domain name request is associated with malicious activity and responding to the request with a network address of a monitored computing device to cause the requesting process to communicate with the monitored computing device in place of an adversary server. Additionally, a service may monitor dormant domains names associated with malicious activity and, in response to a change, respond with an alert or a configuration update.
申请公布号 IL240743(D0) 申请公布日期 2015.10.29
申请号 IL20150240743 申请日期 2015.08.20
申请人 CROWDSTRIKE INC.;DMITRI ALPEROVITCH;SVEN KRASSER;ADAM S. MEYERS;DAVID F. DIEHL;GEORGE ROBERT KURTZ 发明人
分类号 G06F 主分类号 G06F
代理机构 代理人
主权项
地址
您可能感兴趣的专利