发明授权
- 专利标题: Systems and methods for detecting malicious use of digital certificates
- 专利标题(中): 检测恶意使用数字证书的系统和方法
-
申请号: US14089999申请日: 2013-11-26
-
公开(公告)号: US09407644B1公开(公告)日: 2016-08-02
- 发明人: Tao Cheng , Kevin Roundy , Jie Fu , Zhi Kai Li , Ying Li
- 申请人: Symantec Corporation
- 申请人地址: US CA Mountain View
- 专利权人: Symantec Corporation
- 当前专利权人: Symantec Corporation
- 当前专利权人地址: US CA Mountain View
- 代理机构: ALG Intellectual Property, LLC
- 主分类号: H04L29/06
- IPC分类号: H04L29/06 ; G06F15/18
摘要:
A computer-implemented method for detecting malicious use of digital certificates may include determining that a digital certificate is invalid. The method may further include locating, within the invalid digital certificate, at least one field that was previously identified as being useful in distinguishing malicious use of invalid certificates from benign use of invalid certificates. The method may also include determining, based on analysis of information from the field of the invalid digital certificate, that the invalid digital certificate is potentially being used to facilitate malicious communications. The method may additionally include performing a security action in response to determining that the invalid digital certificate is potentially being used to facilitate malicious communications. Various other methods, systems, and computer-readable media are disclosed.
信息查询