发明授权
- 专利标题: Systems and methods for detecting suspicious internet addresses
- 专利标题(中): 用于检测可疑互联网地址的系统和方法
-
申请号: US14324824申请日: 2014-07-07
-
公开(公告)号: US09332022B1公开(公告)日: 2016-05-03
- 发明人: Peter Ashley
- 申请人: Symantec Corporation
- 申请人地址: US CA Mountain View
- 专利权人: Symantec Corporation
- 当前专利权人: Symantec Corporation
- 当前专利权人地址: US CA Mountain View
- 代理机构: ALG Intellectual Property, LLC
- 主分类号: H04L29/06
- IPC分类号: H04L29/06
摘要:
The disclosed computer-implemented method for detecting suspicious Internet addresses may include (1) monitoring Internet communications of an entity (e.g., an organization or individual), (2) compiling an Internet-address history for the entity that includes one or more Internet addresses involved in the Internet communications of the entity, (3) detecting, after compiling the Internet-address history for the entity, an additional Internet address that may be used in future Internet communications involving the entity, (4) computing a similarity metric between the additional Internet address and at least one Internet-address in the Internet-address history, (5) determining that the similarity metric indicates that the additional Internet address is suspicious, and (6) performing a security action in response to determining that the similarity metric indicates that the additional Internet address is suspicious. Various other methods, systems, and computer-readable media are also disclosed.
信息查询