发明名称 ADVANCED PERSISTENT THREAT (APT) DETECTION CENTER
摘要 A computerized method is described in which one or more received objects are analyzed by an advanced persistent threat (APT) detection center to determine if the objects are APTs. The analysis may include the extraction of features describing and characterizing features of the received objects. The extracted features may be compared with features of known APT malware objects and known non-APT malware objects to determine a classification or probability of the received objects being APT malware. Upon determination that the received objects are APT malware, warning messages may be transmitted to a user of associated client devices. Classified objects may also be used to generate analytic data for the prediction and prevention of future APT attacks.
申请公布号 WO2015047802(A2) 申请公布日期 2015.04.02
申请号 WO2014US55956 申请日期 2014.09.16
申请人 FIREEYE, INC. 发明人 HAQ, THOUFIQUE;ZHAI, JINJIAN;PIDATHALA, VINAY K.
分类号 G06F21/56 主分类号 G06F21/56
代理机构 代理人
主权项
地址