DETECTION AND TRAIL-CONTINUATION FOR ATTACKS THROUGH REMOTE PROCESS EXECUTION LATERAL MOVEMENT

Infrastructure attacks are identified by monitoring system level activities using software agents deployed on respective operating systems and constructing, based on the system level activities, an execution graph comprising a plurality of execution trails. A connection to a remote server executing...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: Patil, Rushikesh, Kim, Eun-Gyu, Mukherjee, Niloy, Siroya, Sandeep
Format: Patent
Sprache:eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!